• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

kubeovn / kube-ovn / 14188288034

01 Apr 2025 05:56AM UTC coverage: 21.809% (-0.2%) from 22.009%
14188288034

push

github

web-flow
ovn lb select the local chassis's backend prefer (#4894)

* add lb:option prefer_local_backend

Signed-off-by: clyi <clyi@alauda.io>

* support metallb underlay

Signed-off-by: clyi <clyi@alauda.io>

0 of 446 new or added lines in 8 files covered. (0.0%)

1 existing line in 1 file now uncovered.

10265 of 47068 relevant lines covered (21.81%)

0.51 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

0.0
/pkg/daemon/controller.go
1
package daemon
2

3
import (
4
        "context"
5
        "fmt"
6
        "os/exec"
7
        "slices"
8
        "strconv"
9
        "time"
10

11
        nadutils "github.com/k8snetworkplumbingwg/network-attachment-definition-client/pkg/utils"
12
        "github.com/scylladb/go-set/strset"
13
        v1 "k8s.io/api/core/v1"
14
        k8serrors "k8s.io/apimachinery/pkg/api/errors"
15
        metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
16
        utilruntime "k8s.io/apimachinery/pkg/util/runtime"
17
        "k8s.io/apimachinery/pkg/util/wait"
18
        "k8s.io/client-go/informers"
19
        "k8s.io/client-go/kubernetes/scheme"
20
        typedcorev1 "k8s.io/client-go/kubernetes/typed/core/v1"
21
        listerv1 "k8s.io/client-go/listers/core/v1"
22
        "k8s.io/client-go/tools/cache"
23
        "k8s.io/client-go/tools/record"
24
        "k8s.io/client-go/util/workqueue"
25
        "k8s.io/klog/v2"
26
        k8sexec "k8s.io/utils/exec"
27

28
        kubeovnv1 "github.com/kubeovn/kube-ovn/pkg/apis/kubeovn/v1"
29
        kubeovninformer "github.com/kubeovn/kube-ovn/pkg/client/informers/externalversions"
30
        kubeovnlister "github.com/kubeovn/kube-ovn/pkg/client/listers/kubeovn/v1"
31
        "github.com/kubeovn/kube-ovn/pkg/ovs"
32
        "github.com/kubeovn/kube-ovn/pkg/util"
33
)
34

35
// Controller watch pod and namespace changes to update iptables, ipset and ovs qos
36
type Controller struct {
37
        config *Configuration
38

39
        providerNetworksLister          kubeovnlister.ProviderNetworkLister
40
        providerNetworksSynced          cache.InformerSynced
41
        addOrUpdateProviderNetworkQueue workqueue.TypedRateLimitingInterface[string]
42
        deleteProviderNetworkQueue      workqueue.TypedRateLimitingInterface[*kubeovnv1.ProviderNetwork]
43

44
        vlansLister kubeovnlister.VlanLister
45
        vlansSynced cache.InformerSynced
46

47
        subnetsLister kubeovnlister.SubnetLister
48
        subnetsSynced cache.InformerSynced
49
        subnetQueue   workqueue.TypedRateLimitingInterface[*subnetEvent]
50

51
        ovnEipsLister kubeovnlister.OvnEipLister
52
        ovnEipsSynced cache.InformerSynced
53

54
        podsLister listerv1.PodLister
55
        podsSynced cache.InformerSynced
56
        podQueue   workqueue.TypedRateLimitingInterface[string]
57

58
        nodesLister listerv1.NodeLister
59
        nodesSynced cache.InformerSynced
60

61
        servicesLister listerv1.ServiceLister
62
        servicesSynced cache.InformerSynced
63
        serviceQueue   workqueue.TypedRateLimitingInterface[*serviceEvent]
64

65
        recorder record.EventRecorder
66

67
        protocol string
68

69
        ControllerRuntime
70
        localPodName   string
71
        localNamespace string
72

73
        k8sExec k8sexec.Interface
74
}
75

76
func newTypedRateLimitingQueue[T comparable](name string, rateLimiter workqueue.TypedRateLimiter[T]) workqueue.TypedRateLimitingInterface[T] {
×
77
        if rateLimiter == nil {
×
78
                rateLimiter = workqueue.DefaultTypedControllerRateLimiter[T]()
×
79
        }
×
80
        return workqueue.NewTypedRateLimitingQueueWithConfig(rateLimiter, workqueue.TypedRateLimitingQueueConfig[T]{Name: name})
×
81
}
82

83
// NewController init a daemon controller
84
func NewController(config *Configuration, stopCh <-chan struct{}, podInformerFactory, nodeInformerFactory informers.SharedInformerFactory, kubeovnInformerFactory kubeovninformer.SharedInformerFactory) (*Controller, error) {
×
85
        eventBroadcaster := record.NewBroadcaster()
×
86
        eventBroadcaster.StartLogging(klog.Infof)
×
87
        eventBroadcaster.StartRecordingToSink(&typedcorev1.EventSinkImpl{Interface: config.KubeClient.CoreV1().Events(v1.NamespaceAll)})
×
88
        recorder := eventBroadcaster.NewRecorder(scheme.Scheme, v1.EventSource{Component: config.NodeName})
×
89
        providerNetworkInformer := kubeovnInformerFactory.Kubeovn().V1().ProviderNetworks()
×
90
        vlanInformer := kubeovnInformerFactory.Kubeovn().V1().Vlans()
×
91
        subnetInformer := kubeovnInformerFactory.Kubeovn().V1().Subnets()
×
92
        ovnEipInformer := kubeovnInformerFactory.Kubeovn().V1().OvnEips()
×
93
        podInformer := podInformerFactory.Core().V1().Pods()
×
94
        nodeInformer := nodeInformerFactory.Core().V1().Nodes()
×
NEW
95
        servicesInformer := nodeInformerFactory.Core().V1().Services()
×
96

×
97
        controller := &Controller{
×
98
                config: config,
×
99

×
100
                providerNetworksLister:          providerNetworkInformer.Lister(),
×
101
                providerNetworksSynced:          providerNetworkInformer.Informer().HasSynced,
×
102
                addOrUpdateProviderNetworkQueue: newTypedRateLimitingQueue[string]("AddOrUpdateProviderNetwork", nil),
×
103
                deleteProviderNetworkQueue:      newTypedRateLimitingQueue[*kubeovnv1.ProviderNetwork]("DeleteProviderNetwork", nil),
×
104

×
105
                vlansLister: vlanInformer.Lister(),
×
106
                vlansSynced: vlanInformer.Informer().HasSynced,
×
107

×
108
                subnetsLister: subnetInformer.Lister(),
×
109
                subnetsSynced: subnetInformer.Informer().HasSynced,
×
110
                subnetQueue:   newTypedRateLimitingQueue[*subnetEvent]("Subnet", nil),
×
111

×
112
                ovnEipsLister: ovnEipInformer.Lister(),
×
113
                ovnEipsSynced: ovnEipInformer.Informer().HasSynced,
×
114

×
115
                podsLister: podInformer.Lister(),
×
116
                podsSynced: podInformer.Informer().HasSynced,
×
117
                podQueue:   newTypedRateLimitingQueue[string]("Pod", nil),
×
118

×
119
                nodesLister: nodeInformer.Lister(),
×
120
                nodesSynced: nodeInformer.Informer().HasSynced,
×
121

×
NEW
122
                servicesLister: servicesInformer.Lister(),
×
NEW
123
                servicesSynced: servicesInformer.Informer().HasSynced,
×
NEW
124
                serviceQueue:   newTypedRateLimitingQueue[*serviceEvent]("Service", nil),
×
NEW
125

×
126
                recorder: recorder,
×
127
                k8sExec:  k8sexec.New(),
×
128
        }
×
129

×
130
        node, err := config.KubeClient.CoreV1().Nodes().Get(context.Background(), config.NodeName, metav1.GetOptions{})
×
131
        if err != nil {
×
132
                util.LogFatalAndExit(err, "failed to get node %s info", config.NodeName)
×
133
        }
×
134
        controller.protocol = util.CheckProtocol(node.Annotations[util.IPAddressAnnotation])
×
135

×
136
        if err = controller.initRuntime(); err != nil {
×
137
                return nil, err
×
138
        }
×
139

140
        podInformerFactory.Start(stopCh)
×
141
        nodeInformerFactory.Start(stopCh)
×
142
        kubeovnInformerFactory.Start(stopCh)
×
143

×
144
        if !cache.WaitForCacheSync(stopCh,
×
145
                controller.providerNetworksSynced, controller.vlansSynced, controller.subnetsSynced,
×
NEW
146
                controller.podsSynced, controller.nodesSynced, controller.servicesSynced) {
×
147
                util.LogFatalAndExit(nil, "failed to wait for caches to sync")
×
148
        }
×
149

150
        if _, err = providerNetworkInformer.Informer().AddEventHandler(cache.ResourceEventHandlerFuncs{
×
151
                AddFunc:    controller.enqueueAddProviderNetwork,
×
152
                UpdateFunc: controller.enqueueUpdateProviderNetwork,
×
153
                DeleteFunc: controller.enqueueDeleteProviderNetwork,
×
154
        }); err != nil {
×
155
                return nil, err
×
156
        }
×
157
        if _, err = vlanInformer.Informer().AddEventHandler(cache.ResourceEventHandlerFuncs{
×
158
                UpdateFunc: controller.enqueueUpdateVlan,
×
159
        }); err != nil {
×
160
                return nil, err
×
161
        }
×
162
        if _, err = subnetInformer.Informer().AddEventHandler(cache.ResourceEventHandlerFuncs{
×
163
                AddFunc:    controller.enqueueAddSubnet,
×
164
                UpdateFunc: controller.enqueueUpdateSubnet,
×
165
                DeleteFunc: controller.enqueueDeleteSubnet,
×
166
        }); err != nil {
×
167
                return nil, err
×
168
        }
×
NEW
169
        if _, err = servicesInformer.Informer().AddEventHandler(cache.ResourceEventHandlerFuncs{
×
NEW
170
                AddFunc:    controller.enqueueAddService,
×
NEW
171
                DeleteFunc: controller.enqueueDeleteService,
×
NEW
172
                UpdateFunc: controller.enqueueUpdateService,
×
NEW
173
        }); err != nil {
×
NEW
174
                util.LogFatalAndExit(err, "failed to add service event handler")
×
NEW
175
        }
×
176

177
        if _, err = podInformer.Informer().AddEventHandler(cache.ResourceEventHandlerFuncs{
×
178
                UpdateFunc: controller.enqueuePod,
×
179
        }); err != nil {
×
180
                return nil, err
×
181
        }
×
182

183
        return controller, nil
×
184
}
185

186
func (c *Controller) enqueueAddProviderNetwork(obj interface{}) {
×
187
        key := cache.MetaObjectToName(obj.(*kubeovnv1.ProviderNetwork)).String()
×
188
        klog.V(3).Infof("enqueue add provider network %s", key)
×
189
        c.addOrUpdateProviderNetworkQueue.Add(key)
×
190
}
×
191

192
func (c *Controller) enqueueUpdateProviderNetwork(_, newObj interface{}) {
×
193
        key := cache.MetaObjectToName(newObj.(*kubeovnv1.ProviderNetwork)).String()
×
194
        klog.V(3).Infof("enqueue update provider network %s", key)
×
195
        c.addOrUpdateProviderNetworkQueue.Add(key)
×
196
}
×
197

198
func (c *Controller) enqueueDeleteProviderNetwork(obj interface{}) {
×
199
        pn := obj.(*kubeovnv1.ProviderNetwork)
×
200
        key := cache.MetaObjectToName(pn).String()
×
201
        klog.V(3).Infof("enqueue delete provider network %s", key)
×
202
        c.deleteProviderNetworkQueue.Add(pn)
×
203
}
×
204

205
func (c *Controller) runAddOrUpdateProviderNetworkWorker() {
×
206
        for c.processNextAddOrUpdateProviderNetworkWorkItem() {
×
207
        }
×
208
}
209

210
func (c *Controller) runDeleteProviderNetworkWorker() {
×
211
        for c.processNextDeleteProviderNetworkWorkItem() {
×
212
        }
×
213
}
214

215
func (c *Controller) processNextAddOrUpdateProviderNetworkWorkItem() bool {
×
216
        key, shutdown := c.addOrUpdateProviderNetworkQueue.Get()
×
217
        if shutdown {
×
218
                return false
×
219
        }
×
220

221
        err := func(key string) error {
×
222
                defer c.addOrUpdateProviderNetworkQueue.Done(key)
×
223
                if err := c.handleAddOrUpdateProviderNetwork(key); err != nil {
×
224
                        return fmt.Errorf("error syncing %q: %w, requeuing", key, err)
×
225
                }
×
226
                c.addOrUpdateProviderNetworkQueue.Forget(key)
×
227
                return nil
×
228
        }(key)
229
        if err != nil {
×
230
                utilruntime.HandleError(err)
×
231
                c.addOrUpdateProviderNetworkQueue.AddRateLimited(key)
×
232
                return true
×
233
        }
×
234
        return true
×
235
}
236

237
func (c *Controller) processNextDeleteProviderNetworkWorkItem() bool {
×
238
        obj, shutdown := c.deleteProviderNetworkQueue.Get()
×
239
        if shutdown {
×
240
                return false
×
241
        }
×
242

243
        err := func(obj *kubeovnv1.ProviderNetwork) error {
×
244
                defer c.deleteProviderNetworkQueue.Done(obj)
×
245
                if err := c.handleDeleteProviderNetwork(obj); err != nil {
×
246
                        return fmt.Errorf("error syncing %q: %w, requeuing", obj.Name, err)
×
247
                }
×
248
                c.deleteProviderNetworkQueue.Forget(obj)
×
249
                return nil
×
250
        }(obj)
251
        if err != nil {
×
252
                utilruntime.HandleError(err)
×
253
                c.deleteProviderNetworkQueue.AddRateLimited(obj)
×
254
                return true
×
255
        }
×
256
        return true
×
257
}
258

259
func (c *Controller) handleAddOrUpdateProviderNetwork(key string) error {
×
260
        klog.V(3).Infof("handle update provider network %s", key)
×
261
        node, err := c.nodesLister.Get(c.config.NodeName)
×
262
        if err != nil {
×
263
                klog.Error(err)
×
264
                return err
×
265
        }
×
266
        pn, err := c.providerNetworksLister.Get(key)
×
267
        if err != nil {
×
268
                if k8serrors.IsNotFound(err) {
×
269
                        return nil
×
270
                }
×
271
                klog.Error(err)
×
272
                return err
×
273
        }
274

275
        if slices.Contains(pn.Spec.ExcludeNodes, node.Name) {
×
276
                c.recordProviderNetworkErr(pn.Name, "")
×
277
                return c.cleanProviderNetwork(pn.DeepCopy(), node.DeepCopy())
×
278
        }
×
279
        return c.initProviderNetwork(pn.DeepCopy(), node.DeepCopy())
×
280
}
281

282
func (c *Controller) initProviderNetwork(pn *kubeovnv1.ProviderNetwork, node *v1.Node) error {
×
283
        nic := pn.Spec.DefaultInterface
×
284
        for _, item := range pn.Spec.CustomInterfaces {
×
285
                if slices.Contains(item.Nodes, node.Name) {
×
286
                        nic = item.Interface
×
287
                        break
×
288
                }
289
        }
290

291
        patch := util.KVPatch{
×
292
                fmt.Sprintf(util.ProviderNetworkReadyTemplate, pn.Name):     nil,
×
293
                fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, pn.Name): nil,
×
294
                fmt.Sprintf(util.ProviderNetworkMtuTemplate, pn.Name):       nil,
×
295
                fmt.Sprintf(util.ProviderNetworkExcludeTemplate, pn.Name):   nil,
×
296
        }
×
297

×
298
        vlans := strset.NewWithSize(len(pn.Status.Vlans) + 1)
×
299
        for _, vlanName := range pn.Status.Vlans {
×
300
                vlan, err := c.vlansLister.Get(vlanName)
×
301
                if err != nil {
×
302
                        if k8serrors.IsNotFound(err) {
×
303
                                klog.Infof("vlan %s not found", vlanName)
×
304
                                continue
×
305
                        }
306
                        klog.Errorf("failed to get vlan %q: %v", vlanName, err)
×
307
                        return err
×
308
                }
309
                vlans.Add(strconv.Itoa(vlan.Spec.ID))
×
310
        }
311
        // always add trunk 0 so that the ovs bridge can communicate with the external network
312
        vlans.Add("0")
×
313

×
314
        var mtu int
×
315
        var err error
×
316
        klog.V(3).Infof("ovs init provider network %s", pn.Name)
×
317
        if mtu, err = c.ovsInitProviderNetwork(pn.Name, nic, vlans.List(), pn.Spec.ExchangeLinkName, c.config.MacLearningFallback); err != nil {
×
318
                delete(patch, fmt.Sprintf(util.ProviderNetworkExcludeTemplate, pn.Name))
×
319
                if err1 := util.PatchLabels(c.config.KubeClient.CoreV1().Nodes(), node.Name, patch); err1 != nil {
×
320
                        klog.Errorf("failed to patch annotations of node %s: %v", node.Name, err1)
×
321
                }
×
322
                c.recordProviderNetworkErr(pn.Name, err.Error())
×
323
                return err
×
324
        }
325

326
        patch[fmt.Sprintf(util.ProviderNetworkReadyTemplate, pn.Name)] = "true"
×
327
        patch[fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, pn.Name)] = nic
×
328
        patch[fmt.Sprintf(util.ProviderNetworkMtuTemplate, pn.Name)] = strconv.Itoa(mtu)
×
329
        if err = util.PatchLabels(c.config.KubeClient.CoreV1().Nodes(), node.Name, patch); err != nil {
×
330
                klog.Errorf("failed to patch labels of node %s: %v", node.Name, err)
×
331
                return err
×
332
        }
×
333
        c.recordProviderNetworkErr(pn.Name, "")
×
334
        return nil
×
335
}
336

337
func (c *Controller) recordProviderNetworkErr(providerNetwork, errMsg string) {
×
338
        var currentPod *v1.Pod
×
339
        var err error
×
340
        if c.localPodName == "" {
×
341
                pods, err := c.config.KubeClient.CoreV1().Pods(v1.NamespaceAll).List(context.Background(), metav1.ListOptions{
×
342
                        LabelSelector: "app=kube-ovn-cni",
×
343
                        FieldSelector: fmt.Sprintf("spec.nodeName=%s", c.config.NodeName),
×
344
                })
×
345
                if err != nil {
×
346
                        klog.Errorf("failed to list pod: %v", err)
×
347
                        return
×
348
                }
×
349
                for _, pod := range pods.Items {
×
350
                        if pod.Spec.NodeName == c.config.NodeName && pod.Status.Phase == v1.PodRunning {
×
351
                                c.localPodName = pod.Name
×
352
                                c.localNamespace = pod.Namespace
×
353
                                currentPod = &pod
×
354
                                break
×
355
                        }
356
                }
357
                if currentPod == nil {
×
358
                        klog.Warning("failed to get self pod")
×
359
                        return
×
360
                }
×
361
        } else {
×
362
                if currentPod, err = c.podsLister.Pods(c.localNamespace).Get(c.localPodName); err != nil {
×
363
                        klog.Errorf("failed to get pod %s, %v", c.localPodName, err)
×
364
                        return
×
365
                }
×
366
        }
367

368
        patch := util.KVPatch{}
×
369
        if currentPod.Annotations[fmt.Sprintf(util.ProviderNetworkErrMessageTemplate, providerNetwork)] != errMsg {
×
370
                if errMsg == "" {
×
371
                        patch[fmt.Sprintf(util.ProviderNetworkErrMessageTemplate, providerNetwork)] = nil
×
372
                } else {
×
373
                        patch[fmt.Sprintf(util.ProviderNetworkErrMessageTemplate, providerNetwork)] = errMsg
×
374
                }
×
375
                if err = util.PatchAnnotations(c.config.KubeClient.CoreV1().Pods(c.localNamespace), c.localPodName, patch); err != nil {
×
376
                        klog.Errorf("failed to patch pod %s: %v", c.localPodName, err)
×
377
                        return
×
378
                }
×
379
        }
380
}
381

382
func (c *Controller) cleanProviderNetwork(pn *kubeovnv1.ProviderNetwork, node *v1.Node) error {
×
383
        patch := util.KVPatch{
×
384
                fmt.Sprintf(util.ProviderNetworkReadyTemplate, pn.Name):     nil,
×
385
                fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, pn.Name): nil,
×
386
                fmt.Sprintf(util.ProviderNetworkMtuTemplate, pn.Name):       nil,
×
387
                fmt.Sprintf(util.ProviderNetworkExcludeTemplate, pn.Name):   "true",
×
388
        }
×
389
        if err := util.PatchLabels(c.config.KubeClient.CoreV1().Nodes(), node.Name, patch); err != nil {
×
390
                klog.Errorf("failed to patch labels of node %s: %v", node.Name, err)
×
391
                return err
×
392
        }
×
393

394
        return c.ovsCleanProviderNetwork(pn.Name)
×
395
}
396

397
func (c *Controller) handleDeleteProviderNetwork(pn *kubeovnv1.ProviderNetwork) error {
×
398
        if err := c.ovsCleanProviderNetwork(pn.Name); err != nil {
×
399
                klog.Error(err)
×
400
                return err
×
401
        }
×
402

403
        node, err := c.nodesLister.Get(c.config.NodeName)
×
404
        if err != nil {
×
405
                klog.Error(err)
×
406
                return err
×
407
        }
×
408
        if len(node.Labels) == 0 {
×
409
                return nil
×
410
        }
×
411

412
        patch := util.KVPatch{
×
413
                fmt.Sprintf(util.ProviderNetworkReadyTemplate, pn.Name):     nil,
×
414
                fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, pn.Name): nil,
×
415
                fmt.Sprintf(util.ProviderNetworkMtuTemplate, pn.Name):       nil,
×
416
                fmt.Sprintf(util.ProviderNetworkExcludeTemplate, pn.Name):   nil,
×
417
        }
×
418
        if err = util.PatchLabels(c.config.KubeClient.CoreV1().Nodes(), node.Name, patch); err != nil {
×
419
                klog.Errorf("failed to patch labels of node %s: %v", node.Name, err)
×
420
                return err
×
421
        }
×
422

423
        return nil
×
424
}
425

426
func (c *Controller) enqueueUpdateVlan(oldObj, newObj interface{}) {
×
427
        oldVlan := oldObj.(*kubeovnv1.Vlan)
×
428
        newVlan := newObj.(*kubeovnv1.Vlan)
×
429
        if oldVlan.Spec.ID != newVlan.Spec.ID {
×
430
                klog.V(3).Infof("enqueue update provider network %q", newVlan.Spec.Provider)
×
431
                c.addOrUpdateProviderNetworkQueue.Add(newVlan.Spec.Provider)
×
432
        }
×
433
}
434

435
type subnetEvent struct {
436
        oldObj, newObj interface{}
437
}
438

439
type serviceEvent struct {
440
        oldObj, newObj interface{}
441
}
442

443
func (c *Controller) enqueueAddSubnet(obj interface{}) {
×
444
        c.subnetQueue.Add(&subnetEvent{newObj: obj})
×
445
}
×
446

447
func (c *Controller) enqueueUpdateSubnet(oldObj, newObj interface{}) {
×
448
        c.subnetQueue.Add(&subnetEvent{oldObj: oldObj, newObj: newObj})
×
449
}
×
450

451
func (c *Controller) enqueueDeleteSubnet(obj interface{}) {
×
452
        c.subnetQueue.Add(&subnetEvent{oldObj: obj})
×
453
}
×
454

455
func (c *Controller) runSubnetWorker() {
×
456
        for c.processNextSubnetWorkItem() {
×
457
        }
×
458
}
459

NEW
460
func (c *Controller) enqueueAddService(obj interface{}) {
×
NEW
461
        c.serviceQueue.Add(&serviceEvent{newObj: obj})
×
NEW
462
}
×
463

NEW
464
func (c *Controller) enqueueUpdateService(oldObj, newObj interface{}) {
×
NEW
465
        c.serviceQueue.Add(&serviceEvent{oldObj: oldObj, newObj: newObj})
×
NEW
466
}
×
467

NEW
468
func (c *Controller) enqueueDeleteService(obj interface{}) {
×
NEW
469
        c.serviceQueue.Add(&serviceEvent{oldObj: obj})
×
NEW
470
}
×
471

NEW
472
func (c *Controller) runAddOrUpdateServicekWorker() {
×
NEW
473
        for c.processNextServiceWorkItem() {
×
NEW
474
        }
×
475
}
476

477
func (c *Controller) processNextSubnetWorkItem() bool {
×
478
        obj, shutdown := c.subnetQueue.Get()
×
479
        if shutdown {
×
480
                return false
×
481
        }
×
482

483
        err := func(obj *subnetEvent) error {
×
484
                defer c.subnetQueue.Done(obj)
×
485
                if err := c.reconcileRouters(obj); err != nil {
×
486
                        c.subnetQueue.AddRateLimited(obj)
×
487
                        return fmt.Errorf("error syncing %v: %w, requeuing", obj, err)
×
488
                }
×
489
                c.subnetQueue.Forget(obj)
×
490
                return nil
×
491
        }(obj)
492
        if err != nil {
×
493
                utilruntime.HandleError(err)
×
494
                return true
×
495
        }
×
496
        return true
×
497
}
498

NEW
499
func (c *Controller) processNextServiceWorkItem() bool {
×
NEW
500
        obj, shutdown := c.serviceQueue.Get()
×
NEW
501
        if shutdown {
×
NEW
502
                return false
×
NEW
503
        }
×
504

NEW
505
        err := func(obj *serviceEvent) error {
×
NEW
506
                defer c.serviceQueue.Done(obj)
×
NEW
507
                if err := c.reconcileServices(obj); err != nil {
×
NEW
508
                        c.serviceQueue.AddRateLimited(obj)
×
NEW
509
                        return fmt.Errorf("error syncing %v: %w, requeuing", obj, err)
×
NEW
510
                }
×
NEW
511
                c.serviceQueue.Forget(obj)
×
NEW
512
                return nil
×
513
        }(obj)
NEW
514
        if err != nil {
×
NEW
515
                utilruntime.HandleError(err)
×
NEW
516
                return true
×
NEW
517
        }
×
NEW
518
        return true
×
519
}
520

521
func (c *Controller) enqueuePod(oldObj, newObj interface{}) {
×
522
        oldPod := oldObj.(*v1.Pod)
×
523
        newPod := newObj.(*v1.Pod)
×
524
        key := cache.MetaObjectToName(newPod).String()
×
525

×
526
        if oldPod.Annotations[util.IngressRateAnnotation] != newPod.Annotations[util.IngressRateAnnotation] ||
×
527
                oldPod.Annotations[util.EgressRateAnnotation] != newPod.Annotations[util.EgressRateAnnotation] ||
×
528
                oldPod.Annotations[util.NetemQosLatencyAnnotation] != newPod.Annotations[util.NetemQosLatencyAnnotation] ||
×
529
                oldPod.Annotations[util.NetemQosJitterAnnotation] != newPod.Annotations[util.NetemQosJitterAnnotation] ||
×
530
                oldPod.Annotations[util.NetemQosLimitAnnotation] != newPod.Annotations[util.NetemQosLimitAnnotation] ||
×
531
                oldPod.Annotations[util.NetemQosLossAnnotation] != newPod.Annotations[util.NetemQosLossAnnotation] ||
×
532
                oldPod.Annotations[util.MirrorControlAnnotation] != newPod.Annotations[util.MirrorControlAnnotation] {
×
533
                c.podQueue.Add(key)
×
534
                return
×
535
        }
×
536

537
        attachNets, err := nadutils.ParsePodNetworkAnnotation(newPod)
×
538
        if err != nil {
×
539
                return
×
540
        }
×
541
        for _, multiNet := range attachNets {
×
542
                provider := fmt.Sprintf("%s.%s.%s", multiNet.Name, multiNet.Namespace, util.OvnProvider)
×
543
                if newPod.Annotations[fmt.Sprintf(util.AllocatedAnnotationTemplate, provider)] == "true" {
×
544
                        if oldPod.Annotations[fmt.Sprintf(util.IngressRateAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.IngressRateAnnotationTemplate, provider)] ||
×
545
                                oldPod.Annotations[fmt.Sprintf(util.EgressRateAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.EgressRateAnnotationTemplate, provider)] ||
×
546
                                oldPod.Annotations[fmt.Sprintf(util.NetemQosLatencyAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.NetemQosLatencyAnnotationTemplate, provider)] ||
×
547
                                oldPod.Annotations[fmt.Sprintf(util.NetemQosJitterAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.NetemQosJitterAnnotationTemplate, provider)] ||
×
548
                                oldPod.Annotations[fmt.Sprintf(util.NetemQosLimitAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.NetemQosLimitAnnotationTemplate, provider)] ||
×
549
                                oldPod.Annotations[fmt.Sprintf(util.NetemQosLossAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.NetemQosLossAnnotationTemplate, provider)] ||
×
550
                                oldPod.Annotations[fmt.Sprintf(util.MirrorControlAnnotationTemplate, provider)] != newPod.Annotations[fmt.Sprintf(util.MirrorControlAnnotationTemplate, provider)] {
×
551
                                c.podQueue.Add(key)
×
552
                        }
×
553
                }
554
        }
555
}
556

557
func (c *Controller) runPodWorker() {
×
558
        for c.processNextPodWorkItem() {
×
559
        }
×
560
}
561

562
func (c *Controller) processNextPodWorkItem() bool {
×
563
        key, shutdown := c.podQueue.Get()
×
564
        if shutdown {
×
565
                return false
×
566
        }
×
567

568
        err := func(key string) error {
×
569
                defer c.podQueue.Done(key)
×
570
                if err := c.handlePod(key); err != nil {
×
571
                        c.podQueue.AddRateLimited(key)
×
572
                        return fmt.Errorf("error syncing %q: %w, requeuing", key, err)
×
573
                }
×
574
                c.podQueue.Forget(key)
×
575
                return nil
×
576
        }(key)
577
        if err != nil {
×
578
                utilruntime.HandleError(err)
×
579
                return true
×
580
        }
×
581
        return true
×
582
}
583

584
var lastNoPodOvsPort map[string]bool
585

586
func (c *Controller) markAndCleanInternalPort() error {
×
587
        klog.V(4).Infof("start to gc ovs internal ports")
×
588
        residualPorts := ovs.GetResidualInternalPorts()
×
589
        if len(residualPorts) == 0 {
×
590
                return nil
×
591
        }
×
592

593
        noPodOvsPort := map[string]bool{}
×
594
        for _, portName := range residualPorts {
×
595
                if !lastNoPodOvsPort[portName] {
×
596
                        noPodOvsPort[portName] = true
×
597
                } else {
×
598
                        klog.Infof("gc ovs internal port %s", portName)
×
599
                        // Remove ovs port
×
600
                        output, err := ovs.Exec(ovs.IfExists, "--with-iface", "del-port", "br-int", portName)
×
601
                        if err != nil {
×
602
                                return fmt.Errorf("failed to delete ovs port %w, %q", err, output)
×
603
                        }
×
604
                }
605
        }
606
        lastNoPodOvsPort = noPodOvsPort
×
607

×
608
        return nil
×
609
}
610

611
// Run starts controller
612
func (c *Controller) Run(stopCh <-chan struct{}) {
×
613
        defer utilruntime.HandleCrash()
×
614
        defer c.addOrUpdateProviderNetworkQueue.ShutDown()
×
615
        defer c.deleteProviderNetworkQueue.ShutDown()
×
616
        defer c.subnetQueue.ShutDown()
×
NEW
617
        defer c.serviceQueue.ShutDown()
×
618
        defer c.podQueue.ShutDown()
×
619

×
620
        go wait.Until(ovs.CleanLostInterface, time.Minute, stopCh)
×
621
        go wait.Until(recompute, 10*time.Minute, stopCh)
×
622
        go wait.Until(rotateLog, 1*time.Hour, stopCh)
×
623

×
624
        if err := c.setIPSet(); err != nil {
×
625
                util.LogFatalAndExit(err, "failed to set ipsets")
×
626
        }
×
627

628
        klog.Info("Started workers")
×
629
        go wait.Until(c.loopOvn0Check, 5*time.Second, stopCh)
×
630
        go wait.Until(c.loopOvnExt0Check, 5*time.Second, stopCh)
×
631
        go wait.Until(c.loopTunnelCheck, 5*time.Second, stopCh)
×
632
        go wait.Until(c.runAddOrUpdateProviderNetworkWorker, time.Second, stopCh)
×
NEW
633
        go wait.Until(c.runAddOrUpdateServicekWorker, time.Second, stopCh)
×
634
        go wait.Until(c.runDeleteProviderNetworkWorker, time.Second, stopCh)
×
635
        go wait.Until(c.runSubnetWorker, time.Second, stopCh)
×
636
        go wait.Until(c.runPodWorker, time.Second, stopCh)
×
637
        go wait.Until(c.runGateway, 3*time.Second, stopCh)
×
638
        go wait.Until(c.loopEncapIPCheck, 3*time.Second, stopCh)
×
639
        go wait.Until(c.ovnMetricsUpdate, 3*time.Second, stopCh)
×
640
        go wait.Until(func() {
×
641
                if err := c.reconcileRouters(nil); err != nil {
×
642
                        klog.Errorf("failed to reconcile ovn0 routes: %v", err)
×
643
                }
×
644
        }, 3*time.Second, stopCh)
645
        go wait.Until(func() {
×
646
                if err := c.markAndCleanInternalPort(); err != nil {
×
647
                        klog.Errorf("gc ovs port error: %v", err)
×
648
                }
×
649
        }, 5*time.Minute, stopCh)
650

651
        if c.config.EnableTProxy {
×
652
                go c.StartTProxyForwarding()
×
653
                go wait.Until(c.runTProxyConfigWorker, 3*time.Second, stopCh)
×
654
                // Using the tproxy method, kubelet's TCP probe packets cannot reach the namespace of the pod of the custom VPC,
×
655
                // so tproxy itself probes the pod of the custom VPC, if probe failed remove the iptable rules from
×
656
                // kubelet to tproxy, if probe success recover the iptable rules
×
657
                go wait.Until(c.StartTProxyTCPPortProbe, 1*time.Second, stopCh)
×
658
        } else {
×
659
                c.cleanTProxyConfig()
×
660
        }
×
661

662
        if c.config.EnableOVNIPSec {
×
663
                go wait.Until(func() {
×
664
                        if err := c.ManageIPSecKeys(); err != nil {
×
665
                                klog.Errorf("manage ipsec keys error: %v", err)
×
666
                        }
×
667
                }, 24*time.Hour, stopCh)
668
        } else {
×
669
                if err := c.StopAndClearIPSecResouce(); err != nil {
×
670
                        klog.Errorf("stop and clear ipsec resource error: %v", err)
×
671
                }
×
672
        }
673

674
        <-stopCh
×
675
        klog.Info("Shutting down workers")
×
676
}
677

678
func recompute() {
×
679
        output, err := exec.Command("ovn-appctl", "-t", "ovn-controller", "inc-engine/recompute").CombinedOutput()
×
680
        if err != nil {
×
681
                klog.Errorf("failed to recompute ovn-controller %q", output)
×
682
        }
×
683
}
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc