dicos/99_one-master.xml: Ajout et utilisation de la variable arp_cache_poisoning
Permet d'activer ou de désactiver la protection arp_cache_poisoning, si cette option est activée avec OpenVswitch et des réseaux de niveau 2, les VM ne boot pas car elles n'ont pas d'IP et ovs-flowctl attend absolument une IP pour ajouter les règles anti ARP spoofing.
This commit is contained in:
34
tmpl/OpenNebulaNetwork.conf
Normal file
34
tmpl/OpenNebulaNetwork.conf
Normal file
@ -0,0 +1,34 @@
|
||||
# -------------------------------------------------------------------------- #
|
||||
# Copyright 2002-2014, OpenNebula Project (OpenNebula.org), C12G Labs #
|
||||
# #
|
||||
# Licensed under the Apache License, Version 2.0 (the "License"); you may #
|
||||
# not use this file except in compliance with the License. You may obtain #
|
||||
# a copy of the License at #
|
||||
# #
|
||||
# http://www.apache.org/licenses/LICENSE-2.0 #
|
||||
# #
|
||||
# Unless required by applicable law or agreed to in writing, software #
|
||||
# distributed under the License is distributed on an "AS IS" BASIS, #
|
||||
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. #
|
||||
# See the License for the specific language governing permissions and #
|
||||
# limitations under the License. #
|
||||
#--------------------------------------------------------------------------- #
|
||||
|
||||
################################################################################
|
||||
# General Options
|
||||
################################################################################
|
||||
|
||||
# Configure the initial VLAN ID tag (corresponds to vnet ID = 0)
|
||||
:start_vlan: 2
|
||||
|
||||
################################################################################
|
||||
# Open vSwitch Options
|
||||
################################################################################
|
||||
|
||||
# Enable ARP Cache Poisoning Prevention Rules
|
||||
%if %%getVar('arp_cache_poisoning','non') == 'oui'
|
||||
:arp_cache_poisoning: true
|
||||
%else
|
||||
:arp_cache_poisoning: false
|
||||
%end if
|
||||
|
Reference in New Issue
Block a user