Skip to content

Static Routes: fix check on wrong global configuration - #10066

Merged
DaanHoogland merged 1 commit into
apache:4.19from
weizhouapache:4.19-static-route-fix-denied-lists
Jan 31, 2025
Merged

Static Routes: fix check on wrong global configuration#10066
DaanHoogland merged 1 commit into
apache:4.19from
weizhouapache:4.19-static-route-fix-denied-lists

Conversation

@weizhouapache

Copy link
Copy Markdown
Member

Description

This PR fixes the wrong checks on CIDR of static routes

  • define global/zone configuration denied.routes, which has already added to database some years ago

    -- Update name for global configuration 'blacklisted.routes' to 'denied.routes'
    UPDATE`cloud`.`configuration`SET name='denied.routes', description='Routes that are denied, can not be used for Static Routes creation for the VPC Private Gateway'WHERE name='blacklisted.routes';

  • check on the configuration denied.routes ,instead of GuestDomainSuffix

  • check if the route cidr (instead of vpc cidr) is link-local

Types of changes

  • Breaking change (fix or feature that would cause existing functionality to change)
  • New feature (non-breaking change which adds functionality)
  • Bug fix (non-breaking change which fixes an issue)
  • Enhancement (improves an existing feature and functionality)
  • Cleanup (Code refactoring and cleanup, that may add test cases)
  • build/CI
  • test (unit or integration test code)

Feature/Enhancement Scale or Bug Severity

Feature/Enhancement Scale

  • Major
  • Minor

Bug Severity

  • BLOCKER
  • Critical
  • Major
  • Minor
  • Trivial

Screenshots (if appropriate):

How Has This Been Tested?

How did you try to break this feature and the system with this change?

@weizhouapache

Copy link
Copy Markdown
MemberAuthor

@blueorangutan package

@blueorangutan

Copy link
Copy Markdown

@weizhouapache a [SL] Jenkins job has been kicked to build packages. It will be bundled with KVM, XenServer and VMware SystemVM templates. I'll keep you posted as I make progress.

@codecov

codecovBot commented Dec 9, 2024

Copy link
Copy Markdown

Codecov Report

Attention: Patch coverage is 25.00000% with 3 lines in your changes missing coverage. Please review.

Project coverage is 15.12%. Comparing base (971a5b2) to head (8df2245).
Report is 55 commits behind head on 4.19.

Files with missing linesPatch %Lines
...ain/java/com/cloud/network/vpc/VpcManagerImpl.java0.00%2 Missing ⚠️
...tack/engine/orchestration/NetworkOrchestrator.java0.00%1 Missing ⚠️
Additional details and impacted files
@@ Coverage Diff @@## 4.19 #10066 +/- ##
============================================
- Coverage 15.12% 15.12% -0.01% + Complexity 11259 11258 -1 
============================================
Files 5408 5408 Lines 473842 473843 +1 Branches 57771 57771 ============================================
- Hits 71677 71676 -1 - Misses 394168 394169 +1 - Partials 7997 7998 +1 
FlagCoverage Δ
uitests4.30% <ø> (ø)
unittests15.84% <25.00%> (-0.01%)⬇️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

@DaanHooglandDaanHoogland added this to the 4.19.2 milestone Dec 9, 2024

@DaanHooglandDaanHoogland left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

clgtm

@blueorangutan

Copy link
Copy Markdown

Packaging result [SF]: ✔️ el8 ✔️ el9 ✔️ debian ✔️ suse15. SL-JID 11759

@DaanHoogland

Copy link
Copy Markdown
Contributor

@blueorangutan test

@blueorangutan

Copy link
Copy Markdown

@DaanHoogland a [SL] Trillian-Jenkins test job (ol8 mgmt + kvm-ol8) has been kicked to run smoke tests

@blueorangutan

Copy link
Copy Markdown

[SF] Trillian test result (tid-11872)
Environment: kvm-ol8 (x2), Advanced Networking with Mgmt server ol8
Total time taken: 55319 seconds
Marvin logs: https://github.com/blueorangutan/acs-prs/releases/download/trillian/pr10066-t11872-kvm-ol8.zip
Smoke tests completed. 132 look OK, 1 have errors, 0 did not run
Only failed and skipped tests results shown below:

TestResultTime (s)Test File
test_03_secured_to_nonsecured_vm_migrationError397.10test_vm_life_cycle.py

@shwstpprshwstppr left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code lgtm

@DaanHoogland

Copy link
Copy Markdown
Contributor

tested in lab environment, after setting denied.routes to 10.100.0.0/16,
image

@DaanHoogland
DaanHoogland merged commit fbb1ff7 into apache:4.19Jan 31, 2025
@DaanHoogland
DaanHoogland deleted the 4.19-static-route-fix-denied-lists branch January 31, 2025 10:04
dhslove pushed a commit to ablecloud-team/ablestack-cloud that referenced this pull request Jun 19, 2025
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants

@weizhouapache@blueorangutan@DaanHoogland@shwstppr