Change /run bind mount for neutron/openvswitch
Currently we have a very wide /run mount for all Neutron/OVS services, which allows sudo/rootwrap to contact with the hosts dbus - all symptoms are documented in the related bug. Since we use tcp connections to OVS from Neutron agents - removing bind mounts. Closes-Bug: #1861792 Change-Id: Ifee4bec7b2e9ef4e2d624b1411f1a9e6332325c6
Showing
- ansible/roles/neutron/defaults/main.yml 0 additions, 10 deletionsansible/roles/neutron/defaults/main.yml
- ansible/roles/openvswitch/defaults/main.yml 2 additions, 2 deletionsansible/roles/openvswitch/defaults/main.yml
- ansible/roles/ovs-dpdk/defaults/main.yml 2 additions, 2 deletionsansible/roles/ovs-dpdk/defaults/main.yml
- releasenotes/notes/bug-1861792-a44a31693b0c786f.yaml 5 additions, 0 deletionsreleasenotes/notes/bug-1861792-a44a31693b0c786f.yaml
Loading
Please register or sign in to comment