| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 1 | #!/bin/bash | 
|  | 2 | # Subnet IP version | 
|  | 3 | IP_VERSION=${IP_VERSION:-"4+6"} | 
|  | 4 | # Validate IP_VERSION | 
|  | 5 | if [[ $IP_VERSION != "4" ]] && [[ $IP_VERSION != "6" ]] && [[ $IP_VERSION != "4+6" ]]; then | 
|  | 6 | die $LINENO "IP_VERSION must be either 4, 6, or 4+6" | 
|  | 7 | fi | 
|  | 8 | # Specify if the initial private and external networks should be created | 
|  | 9 | NEUTRON_CREATE_INITIAL_NETWORKS=${NEUTRON_CREATE_INITIAL_NETWORKS:-True} | 
|  | 10 |  | 
|  | 11 | ## Provider Network Information | 
|  | 12 | PROVIDER_SUBNET_NAME=${PROVIDER_SUBNET_NAME:-"provider_net"} | 
|  | 13 | IPV6_PROVIDER_SUBNET_NAME=${IPV6_PROVIDER_SUBNET_NAME:-"provider_net_v6"} | 
|  | 14 | IPV6_PROVIDER_FIXED_RANGE=${IPV6_PROVIDER_FIXED_RANGE:-} | 
|  | 15 | IPV6_PROVIDER_NETWORK_GATEWAY=${IPV6_PROVIDER_NETWORK_GATEWAY:-} | 
|  | 16 |  | 
|  | 17 | PUBLIC_BRIDGE=${PUBLIC_BRIDGE:-br-ex} | 
| Ihar Hrachyshka | 7b5c7dc | 2016-07-15 20:17:13 +0200 | [diff] [blame] | 18 | PUBLIC_BRIDGE_MTU=${PUBLIC_BRIDGE_MTU:-1500} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 19 |  | 
| Kevin Benton | 1554ade | 2016-07-22 09:40:19 -0700 | [diff] [blame] | 20 | # If Q_ASSIGN_GATEWAY_TO_PUBLIC_BRIDGE=True, assign the gateway IP of the public | 
|  | 21 | # subnet to the public bridge interface even if Q_USE_PROVIDERNET_FOR_PUBLIC is | 
|  | 22 | # used. | 
|  | 23 | Q_ASSIGN_GATEWAY_TO_PUBLIC_BRIDGE=${Q_ASSIGN_GATEWAY_TO_PUBLIC_BRIDGE:-True} | 
|  | 24 |  | 
| YAMAMOTO Takashi | 1aa4368 | 2016-07-21 19:37:04 +0900 | [diff] [blame] | 25 | # The name of the default router | 
|  | 26 | Q_ROUTER_NAME=${Q_ROUTER_NAME:-router1} | 
|  | 27 |  | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 28 | # If Q_USE_PUBLIC_VETH=True, create and use a veth pair instead of | 
|  | 29 | # PUBLIC_BRIDGE.  This is intended to be used with | 
|  | 30 | # Q_USE_PROVIDERNET_FOR_PUBLIC=True. | 
|  | 31 | Q_USE_PUBLIC_VETH=${Q_USE_PUBLIC_VETH:-False} | 
|  | 32 | Q_PUBLIC_VETH_EX=${Q_PUBLIC_VETH_EX:-veth-pub-ex} | 
|  | 33 | Q_PUBLIC_VETH_INT=${Q_PUBLIC_VETH_INT:-veth-pub-int} | 
|  | 34 |  | 
| vsaienko | d894221 | 2016-05-13 12:51:30 +0300 | [diff] [blame] | 35 | # The next variable is configured by plugin | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 36 | # e.g.  _configure_neutron_l3_agent or lib/neutron_plugins/* | 
|  | 37 | # | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 38 | # L3 routers exist per tenant | 
|  | 39 | Q_L3_ROUTER_PER_TENANT=${Q_L3_ROUTER_PER_TENANT:-True} | 
|  | 40 |  | 
|  | 41 |  | 
| Tim Swanson | bb7d2f2 | 2017-12-16 17:14:10 -0500 | [diff] [blame] | 42 | # Use providernet for public network | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 43 | # | 
| Tim Swanson | bb7d2f2 | 2017-12-16 17:14:10 -0500 | [diff] [blame] | 44 | # If Q_USE_PROVIDERNET_FOR_PUBLIC=True, use a provider network | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 45 | # for external interface of neutron l3-agent.  In that case, | 
|  | 46 | # PUBLIC_PHYSICAL_NETWORK specifies provider:physical_network value | 
|  | 47 | # used for the network.  In case of ofagent, you should add the | 
|  | 48 | # corresponding entry to your OFAGENT_PHYSICAL_INTERFACE_MAPPINGS. | 
|  | 49 | # For openvswitch agent, you should add the corresponding entry to | 
|  | 50 | # your OVS_BRIDGE_MAPPINGS. | 
|  | 51 | # | 
|  | 52 | # eg.  (ofagent) | 
|  | 53 | #    Q_USE_PROVIDERNET_FOR_PUBLIC=True | 
|  | 54 | #    Q_USE_PUBLIC_VETH=True | 
|  | 55 | #    PUBLIC_PHYSICAL_NETWORK=public | 
|  | 56 | #    OFAGENT_PHYSICAL_INTERFACE_MAPPINGS=public:veth-pub-int | 
|  | 57 | # | 
|  | 58 | # eg.  (openvswitch agent) | 
|  | 59 | #    Q_USE_PROVIDERNET_FOR_PUBLIC=True | 
|  | 60 | #    PUBLIC_PHYSICAL_NETWORK=public | 
|  | 61 | #    OVS_BRIDGE_MAPPINGS=public:br-ex | 
| Tim Swanson | bb7d2f2 | 2017-12-16 17:14:10 -0500 | [diff] [blame] | 62 | # | 
|  | 63 | # The provider-network-type defaults to flat, however, the values | 
|  | 64 | # PUBLIC_PROVIDERNET_TYPE and PUBLIC_PROVIDERNET_SEGMENTATION_ID could | 
|  | 65 | # be set to specify the parameters for an alternate network type. | 
| Kevin Benton | 1554ade | 2016-07-22 09:40:19 -0700 | [diff] [blame] | 66 | Q_USE_PROVIDERNET_FOR_PUBLIC=${Q_USE_PROVIDERNET_FOR_PUBLIC:-True} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 67 | PUBLIC_PHYSICAL_NETWORK=${PUBLIC_PHYSICAL_NETWORK:-public} | 
|  | 68 |  | 
|  | 69 | # Generate 40-bit IPv6 Global ID to comply with RFC 4193 | 
|  | 70 | IPV6_GLOBAL_ID=`uuidgen | sed s/-//g | cut -c 23- | sed -e "s/\(..\)\(....\)\(....\)/\1:\2:\3/"` | 
|  | 71 |  | 
|  | 72 | # IPv6 gateway and subnet defaults, in case they are not customized in localrc | 
|  | 73 | IPV6_RA_MODE=${IPV6_RA_MODE:-slaac} | 
|  | 74 | IPV6_ADDRESS_MODE=${IPV6_ADDRESS_MODE:-slaac} | 
|  | 75 | IPV6_PUBLIC_SUBNET_NAME=${IPV6_PUBLIC_SUBNET_NAME:-ipv6-public-subnet} | 
|  | 76 | IPV6_PRIVATE_SUBNET_NAME=${IPV6_PRIVATE_SUBNET_NAME:-ipv6-private-subnet} | 
| Kevin Benton | 4bfbc29 | 2016-11-15 17:26:05 -0800 | [diff] [blame] | 77 | IPV6_ADDRS_SAFE_TO_USE=${IPV6_ADDRS_SAFE_TO_USE:-fd$IPV6_GLOBAL_ID::/56} | 
|  | 78 | # if we got larger than a /64 safe to use, we only use the first /64 to | 
|  | 79 | # avoid side effects outlined in rfc7421 | 
| Clark Boylan | a5afa7d | 2016-11-18 12:32:19 -0800 | [diff] [blame] | 80 | FIXED_RANGE_V6=${FIXED_RANGE_V6:-$(echo $IPV6_ADDRS_SAFE_TO_USE | awk -F '/' '{ print $1"/"($2>63 ? $2 : 64) }')} | 
| Brian Haley | 31813e9 | 2016-08-22 15:39:22 -0400 | [diff] [blame] | 81 | IPV6_PRIVATE_NETWORK_GATEWAY=${IPV6_PRIVATE_NETWORK_GATEWAY:-} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 82 | IPV6_PUBLIC_RANGE=${IPV6_PUBLIC_RANGE:-2001:db8::/64} | 
|  | 83 | IPV6_PUBLIC_NETWORK_GATEWAY=${IPV6_PUBLIC_NETWORK_GATEWAY:-2001:db8::2} | 
|  | 84 | IPV6_ROUTER_GW_IP=${IPV6_ROUTER_GW_IP:-2001:db8::1} | 
|  | 85 |  | 
|  | 86 | # Gateway and subnet defaults, in case they are not customized in localrc | 
| Brian Haley | 31813e9 | 2016-08-22 15:39:22 -0400 | [diff] [blame] | 87 | NETWORK_GATEWAY=${NETWORK_GATEWAY:-} | 
|  | 88 | PUBLIC_NETWORK_GATEWAY=${PUBLIC_NETWORK_GATEWAY:-} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 89 | PRIVATE_SUBNET_NAME=${PRIVATE_SUBNET_NAME:-"private-subnet"} | 
|  | 90 | PUBLIC_SUBNET_NAME=${PUBLIC_SUBNET_NAME:-"public-subnet"} | 
|  | 91 |  | 
|  | 92 | # Subnetpool defaults | 
| rajinir | c58a155 | 2016-09-27 17:14:59 -0500 | [diff] [blame] | 93 | USE_SUBNETPOOL=${USE_SUBNETPOOL:-True} | 
| Jens Rosenboom | f069acf | 2017-02-24 16:25:59 +0100 | [diff] [blame] | 94 | SUBNETPOOL_NAME_V4=${SUBNETPOOL_NAME:-"shared-default-subnetpool-v4"} | 
|  | 95 | SUBNETPOOL_NAME_V6=${SUBNETPOOL_NAME:-"shared-default-subnetpool-v6"} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 96 |  | 
| Kevin Benton | 4bfbc29 | 2016-11-15 17:26:05 -0800 | [diff] [blame] | 97 | SUBNETPOOL_PREFIX_V4=${SUBNETPOOL_PREFIX_V4:-$IPV4_ADDRS_SAFE_TO_USE} | 
|  | 98 | SUBNETPOOL_PREFIX_V6=${SUBNETPOOL_PREFIX_V6:-$IPV6_ADDRS_SAFE_TO_USE} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 99 |  | 
| Kevin Benton | 4bfbc29 | 2016-11-15 17:26:05 -0800 | [diff] [blame] | 100 | SUBNETPOOL_SIZE_V4=${SUBNETPOOL_SIZE_V4:-26} | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 101 | SUBNETPOOL_SIZE_V6=${SUBNETPOOL_SIZE_V6:-64} | 
|  | 102 |  | 
| Henry Gessau | 734f144 | 2016-09-17 19:28:53 -0400 | [diff] [blame] | 103 | default_v4_route_devs=$(ip -4 route | grep ^default | awk '{print $5}') | 
|  | 104 | die_if_not_set $LINENO default_v4_route_devs "Failure retrieving default IPv4 route devices" | 
|  | 105 |  | 
| aojeagarcia | 866efef | 2018-09-28 10:43:46 +0200 | [diff] [blame] | 106 | default_v6_route_devs=$(ip -6 route list match default table all | grep via | awk '{print $5}') | 
| Monty Taylor | c12d1d9 | 2016-08-23 19:07:57 -0500 | [diff] [blame] | 107 |  | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 108 | function _determine_config_l3 { | 
| Angus Lees | a1c70f2 | 2016-05-31 14:43:14 +1000 | [diff] [blame] | 109 | local opts="--config-file $NEUTRON_CONF --config-file $Q_L3_CONF_FILE" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 110 | echo "$opts" | 
|  | 111 | } | 
|  | 112 |  | 
|  | 113 | function _configure_neutron_l3_agent { | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 114 |  | 
|  | 115 | cp $NEUTRON_DIR/etc/l3_agent.ini.sample $Q_L3_CONF_FILE | 
|  | 116 |  | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 117 | iniset $Q_L3_CONF_FILE DEFAULT debug $ENABLE_DEBUG_LOG_LEVEL | 
| Sean M. Collins | a2ed055 | 2016-05-11 15:35:10 -0400 | [diff] [blame] | 118 | iniset $Q_L3_CONF_FILE AGENT root_helper "$Q_RR_COMMAND" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 119 | if [[ "$Q_USE_ROOTWRAP_DAEMON" == "True" ]]; then | 
| Sean M. Collins | a2ed055 | 2016-05-11 15:35:10 -0400 | [diff] [blame] | 120 | iniset $Q_L3_CONF_FILE AGENT root_helper_daemon "$Q_RR_DAEMON_COMMAND" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 121 | fi | 
|  | 122 |  | 
|  | 123 | _neutron_setup_interface_driver $Q_L3_CONF_FILE | 
|  | 124 |  | 
| Stephen Finucane | 24e29f2 | 2016-06-15 14:31:51 +0100 | [diff] [blame] | 125 | neutron_plugin_configure_l3_agent $Q_L3_CONF_FILE | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 126 |  | 
| Sean Dague | 6a008fa | 2016-08-03 15:09:01 -0400 | [diff] [blame] | 127 | # If we've given a PUBLIC_INTERFACE to take over, then we assume | 
|  | 128 | # that we can own the whole thing, and privot it into the OVS | 
|  | 129 | # bridge. If we are not, we're probably on a single interface | 
|  | 130 | # machine, and we just setup NAT so that fixed guests can get out. | 
|  | 131 | if [[ -n "$PUBLIC_INTERFACE" ]]; then | 
|  | 132 | _move_neutron_addresses_route "$PUBLIC_INTERFACE" "$OVS_PHYSICAL_BRIDGE" True False "inet" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 133 |  | 
| Sean Dague | 6a008fa | 2016-08-03 15:09:01 -0400 | [diff] [blame] | 134 | if [[ $(ip -f inet6 a s dev "$PUBLIC_INTERFACE" | grep -c 'global') != 0 ]]; then | 
|  | 135 | _move_neutron_addresses_route "$PUBLIC_INTERFACE" "$OVS_PHYSICAL_BRIDGE" False False "inet6" | 
|  | 136 | fi | 
|  | 137 | else | 
| Henry Gessau | 734f144 | 2016-09-17 19:28:53 -0400 | [diff] [blame] | 138 | for d in $default_v4_route_devs; do | 
|  | 139 | sudo iptables -t nat -A POSTROUTING -o $d -s $FLOATING_RANGE -j MASQUERADE | 
|  | 140 | done | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 141 | fi | 
|  | 142 | } | 
|  | 143 |  | 
|  | 144 | # Explicitly set router id in l3 agent configuration | 
|  | 145 | function _neutron_set_router_id { | 
|  | 146 | if [[ "$Q_L3_ROUTER_PER_TENANT" == "False" ]]; then | 
|  | 147 | iniset $Q_L3_CONF_FILE DEFAULT router_id $ROUTER_ID | 
|  | 148 | fi | 
|  | 149 | } | 
|  | 150 |  | 
|  | 151 | # Get ext_gw_interface depending on value of Q_USE_PUBLIC_VETH | 
|  | 152 | function _neutron_get_ext_gw_interface { | 
|  | 153 | if [[ "$Q_USE_PUBLIC_VETH" == "True" ]]; then | 
|  | 154 | echo $Q_PUBLIC_VETH_EX | 
|  | 155 | else | 
|  | 156 | # Disable in-band as we are going to use local port | 
|  | 157 | # to communicate with VMs | 
|  | 158 | sudo ovs-vsctl set Bridge $PUBLIC_BRIDGE \ | 
|  | 159 | other_config:disable-in-band=true | 
|  | 160 | echo $PUBLIC_BRIDGE | 
|  | 161 | fi | 
|  | 162 | } | 
|  | 163 |  | 
|  | 164 | function create_neutron_initial_network { | 
|  | 165 | local project_id | 
|  | 166 | project_id=$(openstack project list | grep " demo " | get_field 1) | 
|  | 167 | die_if_not_set $LINENO project_id "Failure retrieving project_id for demo" | 
|  | 168 |  | 
|  | 169 | # Allow drivers that need to create an initial network to do so here | 
|  | 170 | if type -p neutron_plugin_create_initial_network_profile > /dev/null; then | 
|  | 171 | neutron_plugin_create_initial_network_profile $PHYSICAL_NETWORK | 
|  | 172 | fi | 
|  | 173 |  | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 174 | if is_networking_extension_supported "auto-allocated-topology"; then | 
| rajinir | c58a155 | 2016-09-27 17:14:59 -0500 | [diff] [blame] | 175 | if [[ "$USE_SUBNETPOOL" == "True" ]]; then | 
|  | 176 | if [[ "$IP_VERSION" =~ 4.* ]]; then | 
| Jens Rosenboom | f069acf | 2017-02-24 16:25:59 +0100 | [diff] [blame] | 177 | SUBNETPOOL_V4_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet pool create $SUBNETPOOL_NAME_V4 --default-prefix-length $SUBNETPOOL_SIZE_V4 --pool-prefix $SUBNETPOOL_PREFIX_V4 --share --default -f value -c id) | 
| rajinir | c58a155 | 2016-09-27 17:14:59 -0500 | [diff] [blame] | 178 | fi | 
|  | 179 | if [[ "$IP_VERSION" =~ .*6 ]]; then | 
| Jens Rosenboom | f069acf | 2017-02-24 16:25:59 +0100 | [diff] [blame] | 180 | SUBNETPOOL_V6_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet pool create $SUBNETPOOL_NAME_V6 --default-prefix-length $SUBNETPOOL_SIZE_V6 --pool-prefix $SUBNETPOOL_PREFIX_V6 --share --default -f value -c id) | 
| rajinir | c58a155 | 2016-09-27 17:14:59 -0500 | [diff] [blame] | 181 | fi | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 182 | fi | 
|  | 183 | fi | 
|  | 184 |  | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 185 | if is_provider_network; then | 
|  | 186 | die_if_not_set $LINENO PHYSICAL_NETWORK "You must specify the PHYSICAL_NETWORK" | 
|  | 187 | die_if_not_set $LINENO PROVIDER_NETWORK_TYPE "You must specify the PROVIDER_NETWORK_TYPE" | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 188 | NET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" network create $PHYSICAL_NETWORK --project $project_id --provider-network-type $PROVIDER_NETWORK_TYPE --provider-physical-network "$PHYSICAL_NETWORK" ${SEGMENTATION_ID:+--provider-segment $SEGMENTATION_ID} --share | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 189 | die_if_not_set $LINENO NET_ID "Failure creating NET_ID for $PHYSICAL_NETWORK $project_id" | 
|  | 190 |  | 
|  | 191 | if [[ "$IP_VERSION" =~ 4.* ]]; then | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 192 | if [ -z $SUBNETPOOL_V4_ID ]; then | 
|  | 193 | fixed_range_v4=$FIXED_RANGE | 
|  | 194 | fi | 
| Shachar Snapiri | fe4c3cf | 2017-09-19 09:52:00 +0300 | [diff] [blame] | 195 | SUBNET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create --project $project_id --ip-version 4 ${ALLOCATION_POOL:+--allocation-pool $ALLOCATION_POOL} $PROVIDER_SUBNET_NAME --gateway $NETWORK_GATEWAY ${SUBNETPOOL_V4_ID:+--subnet-pool $SUBNETPOOL_V4_ID} --network $NET_ID ${fixed_range_v4:+--subnet-range $fixed_range_v4} | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 196 | die_if_not_set $LINENO SUBNET_ID "Failure creating SUBNET_ID for $PROVIDER_SUBNET_NAME $project_id" | 
|  | 197 | fi | 
|  | 198 |  | 
| Sean M. Collins | e34ec99 | 2016-06-07 12:36:50 -0400 | [diff] [blame] | 199 | if [[ "$IP_VERSION" =~ .*6 ]]; then | 
| Jan Stodt | 05dc1aa | 2016-08-25 15:46:02 +0200 | [diff] [blame] | 200 | die_if_not_set $LINENO IPV6_PROVIDER_FIXED_RANGE "IPV6_PROVIDER_FIXED_RANGE has not been set, but Q_USE_PROVIDER_NETWORKING is true and IP_VERSION includes 6" | 
|  | 201 | die_if_not_set $LINENO IPV6_PROVIDER_NETWORK_GATEWAY "IPV6_PROVIDER_NETWORK_GATEWAY has not been set, but Q_USE_PROVIDER_NETWORKING is true and IP_VERSION includes 6" | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 202 | if [ -z $SUBNETPOOL_V6_ID ]; then | 
|  | 203 | fixed_range_v6=$IPV6_PROVIDER_FIXED_RANGE | 
|  | 204 | fi | 
| Shachar Snapiri | fe4c3cf | 2017-09-19 09:52:00 +0300 | [diff] [blame] | 205 | IPV6_SUBNET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create --project $project_id --ip-version 6 --gateway $IPV6_PROVIDER_NETWORK_GATEWAY $IPV6_PROVIDER_SUBNET_NAME ${SUBNETPOOL_V6_ID:+--subnet-pool $SUBNETPOOL_V6_ID} --network $NET_ID ${fixed_range_v6:+--subnet-range $fixed_range_v6} | grep ' id ' | get_field 2) | 
| Ben Swartzlander | d15f222 | 2017-01-24 00:23:41 -0500 | [diff] [blame] | 206 | die_if_not_set $LINENO IPV6_SUBNET_ID "Failure creating IPV6_SUBNET_ID for $IPV6_PROVIDER_SUBNET_NAME $project_id" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 207 | fi | 
|  | 208 |  | 
|  | 209 | if [[ $Q_AGENT == "openvswitch" ]]; then | 
|  | 210 | sudo ip link set $OVS_PHYSICAL_BRIDGE up | 
|  | 211 | sudo ip link set br-int up | 
|  | 212 | sudo ip link set $PUBLIC_INTERFACE up | 
|  | 213 | fi | 
|  | 214 | else | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 215 | NET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" network create --project $project_id "$PRIVATE_NETWORK_NAME" | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 216 | die_if_not_set $LINENO NET_ID "Failure creating NET_ID for $PRIVATE_NETWORK_NAME $project_id" | 
|  | 217 |  | 
|  | 218 | if [[ "$IP_VERSION" =~ 4.* ]]; then | 
|  | 219 | # Create IPv4 private subnet | 
|  | 220 | SUBNET_ID=$(_neutron_create_private_subnet_v4 $project_id) | 
|  | 221 | fi | 
|  | 222 |  | 
|  | 223 | if [[ "$IP_VERSION" =~ .*6 ]]; then | 
|  | 224 | # Create IPv6 private subnet | 
|  | 225 | IPV6_SUBNET_ID=$(_neutron_create_private_subnet_v6 $project_id) | 
|  | 226 | fi | 
|  | 227 | fi | 
|  | 228 |  | 
| Sean M. Collins | c35110e | 2016-05-18 10:38:51 -0400 | [diff] [blame] | 229 | if is_networking_extension_supported "router" && is_networking_extension_supported "external-net"; then | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 230 | # Create a router, and add the private subnet as one of its interfaces | 
|  | 231 | if [[ "$Q_L3_ROUTER_PER_TENANT" == "True" ]]; then | 
|  | 232 | # create a tenant-owned router. | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 233 | ROUTER_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router create --project $project_id $Q_ROUTER_NAME | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 234 | die_if_not_set $LINENO ROUTER_ID "Failure creating ROUTER_ID for $project_id $Q_ROUTER_NAME" | 
|  | 235 | else | 
|  | 236 | # Plugin only supports creating a single router, which should be admin owned. | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 237 | ROUTER_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router create $Q_ROUTER_NAME | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 238 | die_if_not_set $LINENO ROUTER_ID "Failure creating ROUTER_ID for $Q_ROUTER_NAME" | 
|  | 239 | fi | 
|  | 240 |  | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 241 | EXTERNAL_NETWORK_FLAGS="--external" | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 242 | if is_networking_extension_supported "auto-allocated-topology"; then | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 243 | EXTERNAL_NETWORK_FLAGS="$EXTERNAL_NETWORK_FLAGS --default" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 244 | fi | 
|  | 245 | # Create an external network, and a subnet. Configure the external network as router gw | 
|  | 246 | if [ "$Q_USE_PROVIDERNET_FOR_PUBLIC" = "True" ]; then | 
| Tim Swanson | bb7d2f2 | 2017-12-16 17:14:10 -0500 | [diff] [blame] | 247 | EXT_NET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" network create "$PUBLIC_NETWORK_NAME" $EXTERNAL_NETWORK_FLAGS --provider-network-type ${PUBLIC_PROVIDERNET_TYPE:-flat} ${PUBLIC_PROVIDERNET_SEGMENTATION_ID:+--provider-segment $PUBLIC_PROVIDERNET_SEGMENTATION_ID} --provider-physical-network ${PUBLIC_PHYSICAL_NETWORK} | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 248 | else | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 249 | EXT_NET_ID=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" network create "$PUBLIC_NETWORK_NAME" $EXTERNAL_NETWORK_FLAGS | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 250 | fi | 
|  | 251 | die_if_not_set $LINENO EXT_NET_ID "Failure creating EXT_NET_ID for $PUBLIC_NETWORK_NAME" | 
|  | 252 |  | 
|  | 253 | if [[ "$IP_VERSION" =~ 4.* ]]; then | 
|  | 254 | # Configure router for IPv4 public access | 
|  | 255 | _neutron_configure_router_v4 | 
|  | 256 | fi | 
|  | 257 |  | 
|  | 258 | if [[ "$IP_VERSION" =~ .*6 ]]; then | 
|  | 259 | # Configure router for IPv6 public access | 
|  | 260 | _neutron_configure_router_v6 | 
|  | 261 | fi | 
|  | 262 | fi | 
|  | 263 | } | 
|  | 264 |  | 
|  | 265 | # Create private IPv4 subnet | 
|  | 266 | function _neutron_create_private_subnet_v4 { | 
|  | 267 | local project_id=$1 | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 268 | if [ -z $SUBNETPOOL_V4_ID ]; then | 
|  | 269 | fixed_range_v4=$FIXED_RANGE | 
|  | 270 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 271 | local subnet_params="--project $project_id " | 
|  | 272 | subnet_params+="--ip-version 4 " | 
| Brian Haley | 31813e9 | 2016-08-22 15:39:22 -0400 | [diff] [blame] | 273 | if [[ -n "$NETWORK_GATEWAY" ]]; then | 
|  | 274 | subnet_params+="--gateway $NETWORK_GATEWAY " | 
|  | 275 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 276 | subnet_params+="${SUBNETPOOL_V4_ID:+--subnet-pool $SUBNETPOOL_V4_ID} " | 
|  | 277 | subnet_params+="${fixed_range_v4:+--subnet-range $fixed_range_v4} " | 
|  | 278 | subnet_params+="--network $NET_ID $PRIVATE_SUBNET_NAME" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 279 | local subnet_id | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 280 | subnet_id=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create $subnet_params | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 281 | die_if_not_set $LINENO subnet_id "Failure creating private IPv4 subnet for $project_id" | 
|  | 282 | echo $subnet_id | 
|  | 283 | } | 
|  | 284 |  | 
|  | 285 | # Create private IPv6 subnet | 
|  | 286 | function _neutron_create_private_subnet_v6 { | 
|  | 287 | local project_id=$1 | 
|  | 288 | die_if_not_set $LINENO IPV6_RA_MODE "IPV6 RA Mode not set" | 
|  | 289 | die_if_not_set $LINENO IPV6_ADDRESS_MODE "IPV6 Address Mode not set" | 
|  | 290 | local ipv6_modes="--ipv6-ra-mode $IPV6_RA_MODE --ipv6-address-mode $IPV6_ADDRESS_MODE" | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 291 | if [ -z $SUBNETPOOL_V6_ID ]; then | 
|  | 292 | fixed_range_v6=$FIXED_RANGE_V6 | 
|  | 293 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 294 | local subnet_params="--project $project_id " | 
|  | 295 | subnet_params+="--ip-version 6 " | 
| Brian Haley | 31813e9 | 2016-08-22 15:39:22 -0400 | [diff] [blame] | 296 | if [[ -n "$IPV6_PRIVATE_NETWORK_GATEWAY" ]]; then | 
|  | 297 | subnet_params+="--gateway $IPV6_PRIVATE_NETWORK_GATEWAY " | 
|  | 298 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 299 | subnet_params+="${SUBNETPOOL_V6_ID:+--subnet-pool $SUBNETPOOL_V6_ID} " | 
| Brian Haley | 1ec93a8 | 2017-01-12 16:11:11 -0500 | [diff] [blame] | 300 | subnet_params+="${fixed_range_v6:+--subnet-range $fixed_range_v6} " | 
|  | 301 | subnet_params+="$ipv6_modes --network $NET_ID $IPV6_PRIVATE_SUBNET_NAME " | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 302 | local ipv6_subnet_id | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 303 | ipv6_subnet_id=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create $subnet_params | grep ' id ' | get_field 2) | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 304 | die_if_not_set $LINENO ipv6_subnet_id "Failure creating private IPv6 subnet for $project_id" | 
|  | 305 | echo $ipv6_subnet_id | 
|  | 306 | } | 
|  | 307 |  | 
|  | 308 | # Create public IPv4 subnet | 
|  | 309 | function _neutron_create_public_subnet_v4 { | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 310 | local subnet_params="--ip-version 4 " | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 311 | subnet_params+="${Q_FLOATING_ALLOCATION_POOL:+--allocation-pool $Q_FLOATING_ALLOCATION_POOL} " | 
| Brian Haley | 31813e9 | 2016-08-22 15:39:22 -0400 | [diff] [blame] | 312 | if [[ -n "$PUBLIC_NETWORK_GATEWAY" ]]; then | 
|  | 313 | subnet_params+="--gateway $PUBLIC_NETWORK_GATEWAY " | 
|  | 314 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 315 | subnet_params+="--network $EXT_NET_ID --subnet-range $FLOATING_RANGE --no-dhcp " | 
|  | 316 | subnet_params+="$PUBLIC_SUBNET_NAME" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 317 | local id_and_ext_gw_ip | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 318 | id_and_ext_gw_ip=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create $subnet_params | grep -e 'gateway_ip' -e ' id ') | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 319 | die_if_not_set $LINENO id_and_ext_gw_ip "Failure creating public IPv4 subnet" | 
|  | 320 | echo $id_and_ext_gw_ip | 
|  | 321 | } | 
|  | 322 |  | 
|  | 323 | # Create public IPv6 subnet | 
|  | 324 | function _neutron_create_public_subnet_v6 { | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 325 | local subnet_params="--ip-version 6 " | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 326 | subnet_params+="--gateway $IPV6_PUBLIC_NETWORK_GATEWAY " | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 327 | subnet_params+="--network $EXT_NET_ID --subnet-range $IPV6_PUBLIC_RANGE --no-dhcp " | 
|  | 328 | subnet_params+="$IPV6_PUBLIC_SUBNET_NAME" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 329 | local ipv6_id_and_ext_gw_ip | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 330 | ipv6_id_and_ext_gw_ip=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" subnet create $subnet_params | grep -e 'gateway_ip' -e ' id ') | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 331 | die_if_not_set $LINENO ipv6_id_and_ext_gw_ip "Failure creating an IPv6 public subnet" | 
|  | 332 | echo $ipv6_id_and_ext_gw_ip | 
|  | 333 | } | 
|  | 334 |  | 
|  | 335 | # Configure neutron router for IPv4 public access | 
|  | 336 | function _neutron_configure_router_v4 { | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 337 | openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router add subnet $ROUTER_ID $SUBNET_ID | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 338 | # Create a public subnet on the external network | 
|  | 339 | local id_and_ext_gw_ip | 
|  | 340 | id_and_ext_gw_ip=$(_neutron_create_public_subnet_v4 $EXT_NET_ID) | 
|  | 341 | local ext_gw_ip | 
|  | 342 | ext_gw_ip=$(echo $id_and_ext_gw_ip  | get_field 2) | 
|  | 343 | PUB_SUBNET_ID=$(echo $id_and_ext_gw_ip | get_field 5) | 
|  | 344 | # Configure the external network as the default router gateway | 
| Armando Migliaccio | 36f81ff | 2016-11-02 17:50:56 -0700 | [diff] [blame] | 345 | openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router set --external-gateway $EXT_NET_ID $ROUTER_ID | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 346 |  | 
|  | 347 | # This logic is specific to using the l3-agent for layer 3 | 
| Sean M. Collins | d00cbb7 | 2016-06-20 13:53:44 -0400 | [diff] [blame] | 348 | if is_service_enabled q-l3 || is_service_enabled neutron-l3;  then | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 349 | # Configure and enable public bridge | 
|  | 350 | local ext_gw_interface="none" | 
|  | 351 | if is_neutron_ovs_base_plugin; then | 
|  | 352 | ext_gw_interface=$(_neutron_get_ext_gw_interface) | 
|  | 353 | elif [[ "$Q_AGENT" = "linuxbridge" ]]; then | 
| Kevin Benton | 6a42a85 | 2016-07-21 11:11:54 -0700 | [diff] [blame] | 354 | # Get the device the neutron router and network for $FIXED_RANGE | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 355 | # will be using. | 
| Kevin Benton | 6a42a85 | 2016-07-21 11:11:54 -0700 | [diff] [blame] | 356 | if [ "$Q_USE_PROVIDERNET_FOR_PUBLIC" = "True" ]; then | 
|  | 357 | # in provider nets a bridge mapping uses the public bridge directly | 
|  | 358 | ext_gw_interface=$PUBLIC_BRIDGE | 
|  | 359 | else | 
|  | 360 | # e.x. brq3592e767-da for NET_ID 3592e767-da66-4bcb-9bec-cdb03cd96102 | 
|  | 361 | ext_gw_interface=brq${EXT_NET_ID:0:11} | 
|  | 362 | fi | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 363 | fi | 
|  | 364 | if [[ "$ext_gw_interface" != "none" ]]; then | 
|  | 365 | local cidr_len=${FLOATING_RANGE#*/} | 
|  | 366 | local testcmd="ip -o link | grep -q $ext_gw_interface" | 
|  | 367 | test_with_retry "$testcmd" "$ext_gw_interface creation failed" | 
| Kevin Benton | 1554ade | 2016-07-22 09:40:19 -0700 | [diff] [blame] | 368 | if [[ $(ip addr show dev $ext_gw_interface | grep -c $ext_gw_ip) == 0 && ( $Q_USE_PROVIDERNET_FOR_PUBLIC == "False" || $Q_USE_PUBLIC_VETH == "True" || $Q_ASSIGN_GATEWAY_TO_PUBLIC_BRIDGE == "True" ) ]]; then | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 369 | sudo ip addr add $ext_gw_ip/$cidr_len dev $ext_gw_interface | 
|  | 370 | sudo ip link set $ext_gw_interface up | 
|  | 371 | fi | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 372 | ROUTER_GW_IP=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" port list -c 'Fixed IP Addresses' --device-owner network:router_gateway | awk -F'ip_address'  '{ print $2 }' | cut -f2 -d\' | tr '\n' ' ') | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 373 | die_if_not_set $LINENO ROUTER_GW_IP "Failure retrieving ROUTER_GW_IP" | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 374 | fi | 
|  | 375 | _neutron_set_router_id | 
|  | 376 | fi | 
|  | 377 | } | 
|  | 378 |  | 
|  | 379 | # Configure neutron router for IPv6 public access | 
|  | 380 | function _neutron_configure_router_v6 { | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 381 | openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router add subnet $ROUTER_ID $IPV6_SUBNET_ID | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 382 | # Create a public subnet on the external network | 
|  | 383 | local ipv6_id_and_ext_gw_ip | 
|  | 384 | ipv6_id_and_ext_gw_ip=$(_neutron_create_public_subnet_v6 $EXT_NET_ID) | 
|  | 385 | local ipv6_ext_gw_ip | 
|  | 386 | ipv6_ext_gw_ip=$(echo $ipv6_id_and_ext_gw_ip | get_field 2) | 
|  | 387 | local ipv6_pub_subnet_id | 
|  | 388 | ipv6_pub_subnet_id=$(echo $ipv6_id_and_ext_gw_ip | get_field 5) | 
|  | 389 |  | 
|  | 390 | # If the external network has not already been set as the default router | 
|  | 391 | # gateway when configuring an IPv4 public subnet, do so now | 
|  | 392 | if [[ "$IP_VERSION" == "6" ]]; then | 
| PranaliD | 705b378 | 2017-02-01 11:32:09 +0530 | [diff] [blame] | 393 | openstack --os-cloud devstack-admin --os-region "$REGION_NAME" router set --external-gateway $EXT_NET_ID $ROUTER_ID | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 394 | fi | 
|  | 395 |  | 
|  | 396 | # This logic is specific to using the l3-agent for layer 3 | 
| Sean M. Collins | d00cbb7 | 2016-06-20 13:53:44 -0400 | [diff] [blame] | 397 | if is_service_enabled q-l3 || is_service_enabled neutron-l3; then | 
| aojeagarcia | 866efef | 2018-09-28 10:43:46 +0200 | [diff] [blame] | 398 | # Ensure IPv6 forwarding is enabled on the host | 
|  | 399 | sudo sysctl -w net.ipv6.conf.all.forwarding=1 | 
|  | 400 | # if the Linux host considers itself to be a router then it will | 
|  | 401 | # ignore all router advertisements | 
| Henry Gessau | 734f144 | 2016-09-17 19:28:53 -0400 | [diff] [blame] | 402 | # Ensure IPv6 RAs are accepted on interfaces with a default route. | 
| Monty Taylor | c12d1d9 | 2016-08-23 19:07:57 -0500 | [diff] [blame] | 403 | # This is needed for neutron-based devstack clouds to work in | 
|  | 404 | # IPv6-only clouds in the gate. Please do not remove this without | 
|  | 405 | # talking to folks in Infra. | 
| Henry Gessau | 734f144 | 2016-09-17 19:28:53 -0400 | [diff] [blame] | 406 | for d in $default_v6_route_devs; do | 
| Drago Rosson | b34d459 | 2016-09-26 13:23:23 -0500 | [diff] [blame] | 407 | # Slashes must be used in this sysctl command because route devices | 
|  | 408 | # can have dots in their names. If dots were used, dots in the | 
|  | 409 | # device name would be reinterpreted as a slash, causing an error. | 
|  | 410 | sudo sysctl -w net/ipv6/conf/$d/accept_ra=2 | 
| Henry Gessau | 734f144 | 2016-09-17 19:28:53 -0400 | [diff] [blame] | 411 | done | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 412 | # Configure and enable public bridge | 
|  | 413 | # Override global IPV6_ROUTER_GW_IP with the true value from neutron | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 414 | IPV6_ROUTER_GW_IP=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" port list -c 'Fixed IP Addresses' | grep $ipv6_pub_subnet_id | awk -F'ip_address' '{ print $2 }' | cut -f2 -d\' | tr '\n' ' ') | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 415 | die_if_not_set $LINENO IPV6_ROUTER_GW_IP "Failure retrieving IPV6_ROUTER_GW_IP" | 
|  | 416 |  | 
|  | 417 | if is_neutron_ovs_base_plugin; then | 
|  | 418 | local ext_gw_interface | 
|  | 419 | ext_gw_interface=$(_neutron_get_ext_gw_interface) | 
|  | 420 | local ipv6_cidr_len=${IPV6_PUBLIC_RANGE#*/} | 
|  | 421 |  | 
|  | 422 | # Configure interface for public bridge | 
| Yi Zhao | a464ea7 | 2016-05-12 10:32:58 +0800 | [diff] [blame] | 423 | sudo ip -6 addr replace $ipv6_ext_gw_ip/$ipv6_cidr_len dev $ext_gw_interface | 
| Matt Van Dijk | d7a3f5c | 2016-08-16 15:46:58 +0000 | [diff] [blame] | 424 | local replace_range=${SUBNETPOOL_PREFIX_V6} | 
|  | 425 | if [[ -z "${SUBNETPOOL_V6_ID}" ]]; then | 
|  | 426 | replace_range=${FIXED_RANGE_V6} | 
|  | 427 | fi | 
|  | 428 | sudo ip -6 route replace $replace_range via $IPV6_ROUTER_GW_IP dev $ext_gw_interface | 
| Sean M. Collins | 2a24251 | 2016-05-03 09:03:09 -0400 | [diff] [blame] | 429 | fi | 
|  | 430 | _neutron_set_router_id | 
|  | 431 | fi | 
|  | 432 | } | 
| watanabe.isao | 4f4d95a | 2016-05-12 20:35:20 +0900 | [diff] [blame] | 433 |  | 
| Sean M. Collins | c35110e | 2016-05-18 10:38:51 -0400 | [diff] [blame] | 434 | function is_networking_extension_supported { | 
|  | 435 | local extension=$1 | 
|  | 436 | # TODO(sc68cal) cache this instead of calling every time | 
| Armando Migliaccio | 4f11ff3 | 2016-10-27 06:15:23 -0700 | [diff] [blame] | 437 | EXT_LIST=$(openstack --os-cloud devstack-admin --os-region "$REGION_NAME" extension list --network -c Alias -f value) | 
| Sean M. Collins | c35110e | 2016-05-18 10:38:51 -0400 | [diff] [blame] | 438 | [[ $EXT_LIST =~ $extension ]] && return 0 | 
|  | 439 | } |