Skip to content

Commit a5279df

Browse files
committed
feat: add VPNaaS and FWaaS
This change will add VPNaaS and FWaaS to our default neutron configuration. This will ensure that we have full OVN functionality for our end-users and give our consumers access to advanced features within the platform. Signed-off-by: Kevin Carter <[email protected]>
1 parent 5366e4f commit a5279df

File tree

1 file changed

+21
-2
lines changed

1 file changed

+21
-2
lines changed

base-helm-configs/neutron/neutron-helm-overrides.yaml

Lines changed: 21 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -53,6 +53,8 @@ dependencies:
5353
jobs: null
5454
ovn_metadata:
5555
pod: []
56+
ovn_vpn_agent:
57+
pod: []
5658
ovs_agent:
5759
jobs: null
5860
rpc_server:
@@ -167,8 +169,19 @@ conf:
167169
router_scheduler_driver: neutron.scheduler.l3_agent_scheduler.AZLeastRoutersScheduler
168170
rpc_state_report_workers: 2
169171
rpc_workers: 2
170-
service_plugins: "ovn-router,qos,metering,trunk,segments"
172+
service_plugins: "ovn-router,ovn-vpnaas,firewall_v2,qos,metering,trunk,segments"
173+
service_providers:
174+
service_provider:
175+
type: multistring
176+
values:
177+
- "VPN:strongswan:neutron_vpnaas.services.vpn.service_drivers.ovn_ipsec.IPsecOvnVPNDriver:default"
178+
- "FIREWALL_V2:fwaas_db:neutron_fwaas.services.firewall.service_drivers.ovn.firewall_l3_driver.OVNFwaasDriver:default"
179+
fwaas:
180+
agent_version: v2
181+
driver: neutron_fwaas.services.firewall.service_drivers.ovn.firewall_l3_driver.OVNFwaasDriver
182+
enabled: False
171183
agent:
184+
extensions: vpnaas
172185
availability_zone: az1
173186
database:
174187
connection_debug: 0
@@ -225,11 +238,16 @@ conf:
225238
metadata_workers: 2
226239
ovs:
227240
ovsdb_connection: "tcp:127.0.0.1:6640"
241+
ovn_vpn_agent:
242+
ovs:
243+
ovsdb_connection: "tcp:127.0.0.1:6640"
228244
plugins:
229245
ml2_conf:
230246
agent:
231247
availability_zone: az1
232-
extensions: "fip_qos,gateway_ip_qos"
248+
extensions: "fip_qos,gateway_ip_qos,fwaas_v2"
249+
fwaas:
250+
firewall_l2_driver: noop
233251
ml2:
234252
extension_drivers: "port_security,qos"
235253
mechanism_drivers: ovn
@@ -322,6 +340,7 @@ manifests:
322340
daemonset_metadata_agent: false
323341
daemonset_ovn_metadata_agent: true
324342
daemonset_ovs_agent: false
343+
daemonset_ovn_vpn_agent: true
325344
ingress_server: false
326345
job_db_init: false
327346
job_rabbit_init: false

0 commit comments

Comments
 (0)