UDN: Pod2Services L3/L2 isolation is broken on LGW #4687
Labels
feature/user-defined-network-segmentation
All PRs related to User defined network segmentation
kind/bug
All issues that are bugs and PRs opened to fix bugs
What happened?
when you try to go from UDN pod to clusterIP service on default network; it seems given the LB doesn't DNAT this; this is sent into mpX into the host and is getting conveyed via br-ex into GR where its DNATed and reply is successful?
What did you expect to happen?
udn pod should not be able to reach clusterIPs on default network
How can we reproduce it (as minimally and precisely as possible)?
LGW kind cluster run the pod2Services e2e for L3
Anything else we need to know?
No response
OVN-Kubernetes version
Kubernetes version
OVN version
OVS version
Platform
Is it baremetal? GCP? AWS? Azure?
OS version
Install tools
Container runtime (CRI) and version (if applicable)
The text was updated successfully, but these errors were encountered: