• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

kubeovn / kube-ovn / 15605224454

12 Jun 2025 08:12AM UTC coverage: 21.733% (-0.02%) from 21.753%
15605224454

push

github

web-flow
controller: migrate acl tier after upgrade (#5351)

Signed-off-by: zhangzujian <zhangzujian.7@gmail.com>

0 of 35 new or added lines in 2 files covered. (0.0%)

8 existing lines in 2 files now uncovered.

10425 of 47969 relevant lines covered (21.73%)

0.25 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

0.0
/pkg/controller/init.go
1
package controller
2

3
import (
4
        "context"
5
        "errors"
6
        "fmt"
7
        "strings"
8
        "time"
9

10
        "github.com/scylladb/go-set/strset"
11
        v1 "k8s.io/api/core/v1"
12
        k8serrors "k8s.io/apimachinery/pkg/api/errors"
13
        metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
14
        "k8s.io/apimachinery/pkg/labels"
15
        "k8s.io/apimachinery/pkg/types"
16
        "k8s.io/client-go/tools/cache"
17
        "k8s.io/klog/v2"
18
        "k8s.io/utils/ptr"
19
        "sigs.k8s.io/controller-runtime/pkg/client"
20
        "sigs.k8s.io/controller-runtime/pkg/client/config"
21
        "sigs.k8s.io/controller-runtime/pkg/controller/controllerutil"
22

23
        kubeovnv1 "github.com/kubeovn/kube-ovn/pkg/apis/kubeovn/v1"
24
        "github.com/kubeovn/kube-ovn/pkg/ovs"
25
        "github.com/kubeovn/kube-ovn/pkg/ovsdb/ovnnb"
26
        "github.com/kubeovn/kube-ovn/pkg/util"
27
)
28

29
func (c *Controller) InitOVN() error {
×
30
        var err error
×
NEW
31
        if err = c.migrateACLTier(); err != nil {
×
NEW
32
                klog.Errorf("failed to migrate ACL tier: %v", err)
×
NEW
33
                return err
×
NEW
34
        }
×
35

NEW
36
        if err = c.InitDefaultVpc(); err != nil {
×
37
                klog.Errorf("init default vpc failed: %v", err)
×
38
                return err
×
39
        }
×
40

41
        if err = c.initClusterRouter(); err != nil {
×
42
                klog.Errorf("init cluster router failed: %v", err)
×
43
                return err
×
44
        }
×
45

46
        if c.config.EnableLb {
×
47
                if err = c.initLoadBalancer(); err != nil {
×
48
                        klog.Errorf("init load balancer failed: %v", err)
×
49
                        return err
×
50
                }
×
51
        }
52

53
        if err = c.initDefaultVlan(); err != nil {
×
54
                klog.Errorf("init default vlan failed: %v", err)
×
55
                return err
×
56
        }
×
57

58
        if err = c.initNodeSwitch(); err != nil {
×
59
                klog.Errorf("init node switch failed: %v", err)
×
60
                return err
×
61
        }
×
62

63
        if err = c.initDefaultLogicalSwitch(); err != nil {
×
64
                klog.Errorf("init default switch failed: %v", err)
×
65
                return err
×
66
        }
×
67

68
        return nil
×
69
}
70

71
// migrate tier field of ACL rules created in versions prior to v1.13.0
72
// after upgrading, the tier field has a default value of zero, which is not the value used in versions >= v1.13.0
73
// we need to migrate the tier field to the correct value
NEW
74
func (c *Controller) migrateACLTier() error {
×
NEW
75
        return c.OVNNbClient.MigrateACLTier()
×
NEW
76
}
×
77

78
func (c *Controller) InitDefaultVpc() error {
×
79
        cachedVpc, err := c.vpcsLister.Get(c.config.ClusterRouter)
×
80
        if err != nil {
×
81
                if !k8serrors.IsNotFound(err) {
×
82
                        klog.Errorf("failed to get default vpc %q: %v", c.config.ClusterRouter, err)
×
83
                        return err
×
84
                }
×
85
                // create default vpc
86
                vpc := &kubeovnv1.Vpc{
×
87
                        ObjectMeta: metav1.ObjectMeta{Name: c.config.ClusterRouter},
×
88
                }
×
89
                cachedVpc, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().Create(context.Background(), vpc, metav1.CreateOptions{})
×
90
                if err != nil {
×
91
                        klog.Errorf("failed to create default vpc %q: %v", c.config.ClusterRouter, err)
×
92
                        return err
×
93
                }
×
94
        }
95

96
        // update default vpc status
97
        vpc := cachedVpc.DeepCopy()
×
98
        if !vpc.Status.Default || !vpc.Status.Standby ||
×
99
                vpc.Status.Router != c.config.ClusterRouter ||
×
100
                vpc.Status.DefaultLogicalSwitch != c.config.DefaultLogicalSwitch {
×
101
                vpc.Status.Standby = true
×
102
                vpc.Status.Default = true
×
103
                vpc.Status.Router = c.config.ClusterRouter
×
104
                vpc.Status.DefaultLogicalSwitch = c.config.DefaultLogicalSwitch
×
105

×
106
                if _, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().UpdateStatus(context.Background(), vpc, metav1.UpdateOptions{}); err != nil {
×
107
                        klog.Errorf("failed to update default vpc %q: %v", c.config.ClusterRouter, err)
×
108
                        return err
×
109
                }
×
110
        }
111

112
        return nil
×
113
}
114

115
// InitDefaultLogicalSwitch init the default logical switch for ovn network
116
func (c *Controller) initDefaultLogicalSwitch() error {
×
117
        subnet, err := c.subnetsLister.Get(c.config.DefaultLogicalSwitch)
×
118
        if err == nil {
×
119
                if subnet != nil && util.CheckProtocol(c.config.DefaultCIDR) != util.CheckProtocol(subnet.Spec.CIDRBlock) {
×
120
                        // single-stack upgrade to dual-stack
×
121
                        if util.CheckProtocol(c.config.DefaultCIDR) == kubeovnv1.ProtocolDual {
×
122
                                subnet := subnet.DeepCopy()
×
123
                                subnet.Spec.CIDRBlock = c.config.DefaultCIDR
×
124
                                if _, err = c.formatSubnet(subnet); err != nil {
×
125
                                        klog.Errorf("init format subnet %s failed: %v", c.config.DefaultLogicalSwitch, err)
×
126
                                        return err
×
127
                                }
×
128
                        }
129
                }
130
                return nil
×
131
        }
132

133
        if !k8serrors.IsNotFound(err) {
×
134
                klog.Errorf("get default subnet %s failed: %v", c.config.DefaultLogicalSwitch, err)
×
135
                return err
×
136
        }
×
137

138
        defaultSubnet := kubeovnv1.Subnet{
×
139
                ObjectMeta: metav1.ObjectMeta{Name: c.config.DefaultLogicalSwitch},
×
140
                Spec: kubeovnv1.SubnetSpec{
×
141
                        Vpc:                 c.config.ClusterRouter,
×
142
                        Default:             true,
×
143
                        Provider:            util.OvnProvider,
×
144
                        CIDRBlock:           c.config.DefaultCIDR,
×
145
                        Gateway:             c.config.DefaultGateway,
×
146
                        GatewayNode:         "",
×
147
                        DisableGatewayCheck: !c.config.DefaultGatewayCheck,
×
148
                        ExcludeIps:          strings.Split(c.config.DefaultExcludeIps, ","),
×
149
                        NatOutgoing:         true,
×
150
                        GatewayType:         kubeovnv1.GWDistributedType,
×
151
                        Protocol:            util.CheckProtocol(c.config.DefaultCIDR),
×
152
                        EnableLb:            &c.config.EnableLb,
×
153
                },
×
154
        }
×
155
        if c.config.NetworkType == util.NetworkTypeVlan {
×
156
                defaultSubnet.Spec.Vlan = c.config.DefaultVlanName
×
157
                if c.config.DefaultLogicalGateway && c.config.DefaultU2OInterconnection {
×
158
                        err = errors.New("logicalGateway and u2oInterconnection can't be opened at the same time")
×
159
                        klog.Error(err)
×
160
                        return err
×
161
                }
×
162
                defaultSubnet.Spec.LogicalGateway = c.config.DefaultLogicalGateway
×
163
                defaultSubnet.Spec.U2OInterconnection = c.config.DefaultU2OInterconnection
×
164
        }
165

166
        if _, err = c.config.KubeOvnClient.KubeovnV1().Subnets().Create(context.Background(), &defaultSubnet, metav1.CreateOptions{}); err != nil {
×
167
                klog.Errorf("failed to create default subnet %q: %v", c.config.DefaultLogicalSwitch, err)
×
168
                return err
×
169
        }
×
170
        return nil
×
171
}
172

173
// InitNodeSwitch init node switch to connect host and pod
174
func (c *Controller) initNodeSwitch() error {
×
175
        subnet, err := c.subnetsLister.Get(c.config.NodeSwitch)
×
176
        if err == nil {
×
177
                if util.CheckProtocol(c.config.NodeSwitchCIDR) == kubeovnv1.ProtocolDual && util.CheckProtocol(subnet.Spec.CIDRBlock) != kubeovnv1.ProtocolDual {
×
178
                        // single-stack upgrade to dual-stack
×
179
                        subnet := subnet.DeepCopy()
×
180
                        subnet.Spec.CIDRBlock = c.config.NodeSwitchCIDR
×
181
                        if _, err = c.formatSubnet(subnet); err != nil {
×
182
                                klog.Errorf("init format subnet %s failed: %v", c.config.NodeSwitch, err)
×
183
                                return err
×
184
                        }
×
185
                } else {
×
186
                        c.config.NodeSwitchCIDR = subnet.Spec.CIDRBlock
×
187
                }
×
188
                return nil
×
189
        }
190

191
        if !k8serrors.IsNotFound(err) {
×
192
                klog.Errorf("get node subnet %s failed: %v", c.config.NodeSwitch, err)
×
193
                return err
×
194
        }
×
195

196
        nodeSubnet := kubeovnv1.Subnet{
×
197
                ObjectMeta: metav1.ObjectMeta{Name: c.config.NodeSwitch},
×
198
                Spec: kubeovnv1.SubnetSpec{
×
199
                        Vpc:                    c.config.ClusterRouter,
×
200
                        Default:                false,
×
201
                        Provider:               util.OvnProvider,
×
202
                        CIDRBlock:              c.config.NodeSwitchCIDR,
×
203
                        Gateway:                c.config.NodeSwitchGateway,
×
204
                        GatewayNode:            "",
×
205
                        ExcludeIps:             strings.Split(c.config.NodeSwitchGateway, ","),
×
206
                        Protocol:               util.CheckProtocol(c.config.NodeSwitchCIDR),
×
207
                        DisableInterConnection: true,
×
208
                },
×
209
        }
×
210

×
211
        if _, err = c.config.KubeOvnClient.KubeovnV1().Subnets().Create(context.Background(), &nodeSubnet, metav1.CreateOptions{}); err != nil {
×
212
                klog.Errorf("failed to create node subnet %q: %v", c.config.NodeSwitch, err)
×
213
                return err
×
214
        }
×
215
        return nil
×
216
}
217

218
// InitClusterRouter init cluster router to connect different logical switches
219
func (c *Controller) initClusterRouter() error {
×
220
        if err := c.OVNNbClient.CreateLogicalRouter(c.config.ClusterRouter); err != nil {
×
221
                klog.Errorf("create logical router %s failed: %v", c.config.ClusterRouter, err)
×
222
                return err
×
223
        }
×
224

225
        lr, err := c.OVNNbClient.GetLogicalRouter(c.config.ClusterRouter, false)
×
226
        if err != nil {
×
227
                klog.Errorf("get logical router %s failed: %v", c.config.ClusterRouter, err)
×
228
                return err
×
229
        }
×
230

231
        lr.Options = map[string]string{"always_learn_from_arp_request": "false", "dynamic_neigh_routers": "true", "mac_binding_age_threshold": "300"}
×
232
        err = c.OVNNbClient.UpdateLogicalRouter(lr, &lr.Options)
×
233
        if err != nil {
×
234
                klog.Errorf("update logical router %s failed: %v", c.config.ClusterRouter, err)
×
235
                return err
×
236
        }
×
237

238
        return nil
×
239
}
240

241
func (c *Controller) initLB(name, protocol string, sessionAffinity bool) error {
×
242
        protocol = strings.ToLower(protocol)
×
243

×
244
        var (
×
245
                selectFields string
×
246
                err          error
×
247
        )
×
248

×
249
        if sessionAffinity {
×
250
                selectFields = ovnnb.LoadBalancerSelectionFieldsIPSrc
×
251
        }
×
252

253
        if err = c.OVNNbClient.CreateLoadBalancer(name, protocol, selectFields); err != nil {
×
254
                klog.Errorf("create load balancer %s: %v", name, err)
×
255
                return err
×
256
        }
×
257

258
        if sessionAffinity {
×
259
                if err = c.OVNNbClient.SetLoadBalancerAffinityTimeout(name, util.DefaultServiceSessionStickinessTimeout); err != nil {
×
260
                        klog.Errorf("failed to set affinity timeout of %s load balancer %s: %v", protocol, name, err)
×
261
                        return err
×
262
                }
×
263
        }
264

265
        err = c.OVNNbClient.SetLoadBalancerPreferLocalBackend(name, c.config.EnableOVNLBPreferLocal)
×
266
        if err != nil {
×
267
                klog.Errorf("failed to set prefer local backend for load balancer %s: %v", name, err)
×
268
                return err
×
269
        }
×
270

271
        return nil
×
272
}
273

274
// InitLoadBalancer init the default tcp and udp cluster loadbalancer
275
func (c *Controller) initLoadBalancer() error {
×
276
        vpcs, err := c.vpcsLister.List(labels.Everything())
×
277
        if err != nil {
×
278
                klog.Errorf("failed to list vpc: %v", err)
×
279
                return err
×
280
        }
×
281

282
        for _, cachedVpc := range vpcs {
×
283
                vpc := cachedVpc.DeepCopy()
×
284
                vpcLb := c.GenVpcLoadBalancer(vpc.Name)
×
285
                if err = c.initLB(vpcLb.TCPLoadBalancer, string(v1.ProtocolTCP), false); err != nil {
×
286
                        klog.Error(err)
×
287
                        return err
×
288
                }
×
289
                if err = c.initLB(vpcLb.TCPSessLoadBalancer, string(v1.ProtocolTCP), true); err != nil {
×
290
                        klog.Error(err)
×
291
                        return err
×
292
                }
×
293
                if err = c.initLB(vpcLb.UDPLoadBalancer, string(v1.ProtocolUDP), false); err != nil {
×
294
                        klog.Error(err)
×
295
                        return err
×
296
                }
×
297
                if err = c.initLB(vpcLb.UDPSessLoadBalancer, string(v1.ProtocolUDP), true); err != nil {
×
298
                        klog.Error(err)
×
299
                        return err
×
300
                }
×
301
                if err = c.initLB(vpcLb.SctpLoadBalancer, string(v1.ProtocolSCTP), false); err != nil {
×
302
                        klog.Error(err)
×
303
                        return err
×
304
                }
×
305
                if err = c.initLB(vpcLb.SctpSessLoadBalancer, string(v1.ProtocolSCTP), true); err != nil {
×
306
                        klog.Error(err)
×
307
                        return err
×
308
                }
×
309

310
                vpc.Status.TCPLoadBalancer = vpcLb.TCPLoadBalancer
×
311
                vpc.Status.TCPSessionLoadBalancer = vpcLb.TCPSessLoadBalancer
×
312
                vpc.Status.UDPLoadBalancer = vpcLb.UDPLoadBalancer
×
313
                vpc.Status.UDPSessionLoadBalancer = vpcLb.UDPSessLoadBalancer
×
314
                vpc.Status.SctpLoadBalancer = vpcLb.SctpLoadBalancer
×
315
                vpc.Status.SctpSessionLoadBalancer = vpcLb.SctpSessLoadBalancer
×
316
                bytes, err := vpc.Status.Bytes()
×
317
                if err != nil {
×
318
                        klog.Error(err)
×
319
                        return err
×
320
                }
×
321
                if _, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().Patch(context.Background(), vpc.Name, types.MergePatchType, bytes, metav1.PatchOptions{}, "status"); err != nil {
×
322
                        klog.Error(err)
×
323
                        return err
×
324
                }
×
325
        }
326
        return nil
×
327
}
328

329
func (c *Controller) InitIPAM() error {
×
330
        start := time.Now()
×
331
        subnets, err := c.subnetsLister.List(labels.Everything())
×
332
        if err != nil {
×
333
                klog.Errorf("failed to list subnet: %v", err)
×
334
                return err
×
335
        }
×
336
        subnetProviderMaps := make(map[string]string, len(subnets))
×
337
        for _, subnet := range subnets {
×
338
                klog.Infof("Init subnet %s", subnet.Name)
×
339

×
340
                subnetProviderMaps[subnet.Name] = subnet.Spec.Provider
×
341

×
342
                if err := c.ipam.AddOrUpdateSubnet(subnet.Name, subnet.Spec.CIDRBlock, subnet.Spec.Gateway, subnet.Spec.ExcludeIps); err != nil {
×
343
                        klog.Errorf("failed to init subnet %s: %v", subnet.Name, err)
×
344
                }
×
345

346
                u2oInterconnName := fmt.Sprintf(util.U2OInterconnName, subnet.Spec.Vpc, subnet.Name)
×
347
                u2oInterconnLrpName := fmt.Sprintf("%s-%s", subnet.Spec.Vpc, subnet.Name)
×
348
                if subnet.Status.U2OInterconnectionIP != "" {
×
349
                        var mac *string
×
350
                        if subnet.Status.U2OInterconnectionMAC != "" {
×
351
                                mac = ptr.To(subnet.Status.U2OInterconnectionMAC)
×
352
                        } else {
×
353
                                lrp, err := c.OVNNbClient.GetLogicalRouterPort(u2oInterconnLrpName, true)
×
354
                                if err != nil {
×
355
                                        klog.Errorf("failed to get logical router port %s: %v", u2oInterconnLrpName, err)
×
356
                                        return err
×
357
                                }
×
358
                                if lrp != nil {
×
359
                                        mac = ptr.To(lrp.MAC)
×
360
                                }
×
361
                        }
362
                        if _, _, _, err = c.ipam.GetStaticAddress(u2oInterconnName, u2oInterconnLrpName, subnet.Status.U2OInterconnectionIP, mac, subnet.Name, true); err != nil {
×
363
                                klog.Errorf("failed to init subnet %q u2o interconnection ip to ipam %v", subnet.Name, err)
×
364
                        }
×
365
                }
366
        }
367

368
        ippools, err := c.ippoolLister.List(labels.Everything())
×
369
        if err != nil {
×
370
                klog.Errorf("failed to list ippool: %v", err)
×
371
                return err
×
372
        }
×
373
        for _, ippool := range ippools {
×
374
                if err = c.ipam.AddOrUpdateIPPool(ippool.Spec.Subnet, ippool.Name, ippool.Spec.IPs); err != nil {
×
375
                        klog.Errorf("failed to init ippool %s: %v", ippool.Name, err)
×
376
                }
×
377
        }
378

379
        pods, err := c.podsLister.List(labels.Everything())
×
380
        if err != nil {
×
381
                klog.Errorf("failed to list pods: %v", err)
×
382
                return err
×
383
        }
×
384

385
        ips, err := c.ipsLister.List(labels.Everything())
×
386
        if err != nil {
×
387
                klog.Errorf("failed to list IPs: %v", err)
×
388
                return err
×
389
        }
×
390

391
        for _, ip := range ips {
×
392
                if !ip.DeletionTimestamp.IsZero() {
×
393
                        klog.Infof("enqueue update for removing finalizer to delete ip %s", ip.Name)
×
394
                        c.updateIPQueue.Add(ip.Name)
×
395
                        continue
×
396
                }
397
                // recover sts and kubevirt vm ip, other ip recover in later pod loop
398
                if ip.Spec.PodType != util.StatefulSet && ip.Spec.PodType != util.VM {
×
399
                        continue
×
400
                }
401

402
                var ipamKey string
×
403
                if ip.Spec.Namespace != "" {
×
404
                        ipamKey = fmt.Sprintf("%s/%s", ip.Spec.Namespace, ip.Spec.PodName)
×
405
                } else {
×
406
                        ipamKey = util.NodeLspName(ip.Spec.PodName)
×
407
                }
×
408
                if _, _, _, err = c.ipam.GetStaticAddress(ipamKey, ip.Name, ip.Spec.IPAddress, &ip.Spec.MacAddress, ip.Spec.Subnet, true); err != nil {
×
409
                        klog.Errorf("failed to init IPAM from IP CR %s: %v", ip.Name, err)
×
410
                }
×
411
        }
412

413
        for _, pod := range pods {
×
414
                if pod.Spec.HostNetwork {
×
415
                        continue
×
416
                }
417

418
                isAlive := isPodAlive(pod)
×
419
                isStsPod, _, _ := isStatefulSetPod(pod)
×
420
                if !isAlive && !isStsPod {
×
421
                        continue
×
422
                }
423

424
                podNets, err := c.getPodKubeovnNets(pod)
×
425
                if err != nil {
×
426
                        klog.Errorf("failed to get pod kubeovn nets %s.%s address %s: %v", pod.Name, pod.Namespace, pod.Annotations[util.IPAddressAnnotation], err)
×
427
                        continue
×
428
                }
429

430
                podType := getPodType(pod)
×
431
                podName := c.getNameByPod(pod)
×
432
                key := fmt.Sprintf("%s/%s", pod.Namespace, podName)
×
433
                for _, podNet := range podNets {
×
434
                        if pod.Annotations[fmt.Sprintf(util.AllocatedAnnotationTemplate, podNet.ProviderName)] == "true" {
×
435
                                portName := ovs.PodNameToPortName(podName, pod.Namespace, podNet.ProviderName)
×
436
                                ip := pod.Annotations[fmt.Sprintf(util.IPAddressAnnotationTemplate, podNet.ProviderName)]
×
437
                                mac := pod.Annotations[fmt.Sprintf(util.MacAddressAnnotationTemplate, podNet.ProviderName)]
×
438
                                _, _, _, err := c.ipam.GetStaticAddress(key, portName, ip, &mac, podNet.Subnet.Name, true)
×
439
                                if err != nil {
×
440
                                        klog.Errorf("failed to init pod %s.%s address %s: %v", podName, pod.Namespace, pod.Annotations[fmt.Sprintf(util.IPAddressAnnotationTemplate, podNet.ProviderName)], err)
×
441
                                } else {
×
442
                                        err = c.createOrUpdateIPCR(portName, podName, ip, mac, podNet.Subnet.Name, pod.Namespace, pod.Spec.NodeName, podType)
×
443
                                        if err != nil {
×
444
                                                klog.Errorf("failed to create/update ips CR %s.%s with ip address %s: %v", podName, pod.Namespace, ip, err)
×
445
                                        }
×
446
                                }
447

448
                                // Append ExternalIds is added in v1.7, used for upgrading from v1.6.3. It should be deleted now since v1.7 is not used anymore.
449
                        }
450
                }
451
        }
452

453
        vips, err := c.virtualIpsLister.List(labels.Everything())
×
454
        if err != nil {
×
455
                klog.Errorf("failed to list vips: %v", err)
×
456
                return err
×
457
        }
×
458
        for _, vip := range vips {
×
459
                provider, ok := subnetProviderMaps[vip.Spec.Subnet]
×
460
                if !ok {
×
461
                        klog.Errorf("failed to find subnet %s for vip %s", vip.Spec.Subnet, vip.Name)
×
462
                        continue
×
463
                }
464
                portName := ovs.PodNameToPortName(vip.Name, vip.Spec.Namespace, provider)
×
465
                if _, _, _, err = c.ipam.GetStaticAddress(vip.Name, portName, vip.Status.V4ip, &vip.Status.Mac, vip.Spec.Subnet, true); err != nil {
×
466
                        klog.Errorf("failed to init ipam from vip cr %s: %v", vip.Name, err)
×
467
                }
×
468
        }
469

470
        eips, err := c.iptablesEipsLister.List(labels.Everything())
×
471
        if err != nil {
×
472
                klog.Errorf("failed to list EIPs: %v", err)
×
473
                return err
×
474
        }
×
475
        for _, eip := range eips {
×
476
                externalNetwork := util.GetExternalNetwork(eip.Spec.ExternalSubnet)
×
477
                if _, _, _, err = c.ipam.GetStaticAddress(eip.Name, eip.Name, eip.Status.IP, &eip.Spec.MacAddress, externalNetwork, true); err != nil {
×
478
                        klog.Errorf("failed to init ipam from iptables eip cr %s: %v", eip.Name, err)
×
479
                }
×
480
        }
481

482
        oeips, err := c.ovnEipsLister.List(labels.Everything())
×
483
        if err != nil {
×
484
                klog.Errorf("failed to list ovn eips: %v", err)
×
485
                return err
×
486
        }
×
487
        for _, oeip := range oeips {
×
488
                if _, _, _, err = c.ipam.GetStaticAddress(oeip.Name, oeip.Name, oeip.Status.V4Ip, &oeip.Status.MacAddress, oeip.Spec.ExternalSubnet, true); err != nil {
×
489
                        klog.Errorf("failed to init ipam from ovn eip cr %s: %v", oeip.Name, err)
×
490
                }
×
491
        }
492

493
        nodes, err := c.nodesLister.List(labels.Everything())
×
494
        if err != nil {
×
495
                klog.Errorf("failed to list nodes: %v", err)
×
496
                return err
×
497
        }
×
498
        for _, node := range nodes {
×
499
                if node.Annotations[util.AllocatedAnnotation] == "true" {
×
500
                        portName := util.NodeLspName(node.Name)
×
501
                        mac := node.Annotations[util.MacAddressAnnotation]
×
502
                        v4IP, v6IP, _, err := c.ipam.GetStaticAddress(portName, portName,
×
503
                                node.Annotations[util.IPAddressAnnotation], &mac,
×
504
                                node.Annotations[util.LogicalSwitchAnnotation], true)
×
505
                        if err != nil {
×
506
                                klog.Errorf("failed to init node %s.%s address %s: %v", node.Name, node.Namespace, node.Annotations[util.IPAddressAnnotation], err)
×
507
                        }
×
508
                        if v4IP != "" && v6IP != "" {
×
509
                                node.Annotations[util.IPAddressAnnotation] = util.GetStringIP(v4IP, v6IP)
×
510
                        }
×
511
                }
512
        }
513

514
        klog.Infof("take %.2f seconds to initialize IPAM", time.Since(start).Seconds())
×
515
        return nil
×
516
}
517

518
func (c *Controller) initDefaultProviderNetwork() error {
×
519
        _, err := c.providerNetworksLister.Get(c.config.DefaultProviderName)
×
520
        if err == nil {
×
521
                return nil
×
522
        }
×
523
        if !k8serrors.IsNotFound(err) {
×
524
                klog.Errorf("failed to get default provider network %s: %v", c.config.DefaultProviderName, err)
×
525
                return err
×
526
        }
×
527

528
        nodes, err := c.nodesLister.List(labels.Everything())
×
529
        if err != nil {
×
530
                klog.Errorf("failed to get nodes: %v", err)
×
531
                return err
×
532
        }
×
533

534
        pn := kubeovnv1.ProviderNetwork{
×
535
                ObjectMeta: metav1.ObjectMeta{
×
536
                        Name: c.config.DefaultProviderName,
×
537
                },
×
538
                Spec: kubeovnv1.ProviderNetworkSpec{
×
539
                        DefaultInterface: c.config.DefaultHostInterface,
×
540
                        ExchangeLinkName: c.config.DefaultExchangeLinkName,
×
541
                },
×
542
        }
×
543

×
544
        excludeAnno := fmt.Sprintf(util.ProviderNetworkExcludeTemplate, c.config.DefaultProviderName)
×
545
        interfaceAnno := fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, c.config.DefaultProviderName)
×
546
        patchNodes := make([]string, 0, len(nodes))
×
547
        for _, node := range nodes {
×
548
                if len(node.Annotations) == 0 {
×
549
                        continue
×
550
                }
551

552
                if node.Annotations[excludeAnno] == "true" {
×
553
                        pn.Spec.ExcludeNodes = append(pn.Spec.ExcludeNodes, node.Name)
×
554
                        patchNodes = append(patchNodes, node.Name)
×
555
                } else if s := node.Annotations[interfaceAnno]; s != "" {
×
556
                        var index *int
×
557
                        for i := range pn.Spec.CustomInterfaces {
×
558
                                if pn.Spec.CustomInterfaces[i].Interface == s {
×
559
                                        index = &i
×
560
                                        break
×
561
                                }
562
                        }
563
                        if index != nil {
×
564
                                pn.Spec.CustomInterfaces[*index].Nodes = append(pn.Spec.CustomInterfaces[*index].Nodes, node.Name)
×
565
                        } else {
×
566
                                ci := kubeovnv1.CustomInterface{Interface: s, Nodes: []string{node.Name}}
×
567
                                pn.Spec.CustomInterfaces = append(pn.Spec.CustomInterfaces, ci)
×
568
                        }
×
569
                        patchNodes = append(patchNodes, node.Name)
×
570
                }
571
        }
572

573
        defer func() {
×
574
                if err != nil {
×
575
                        return
×
576
                }
×
577

578
                // update nodes only when provider network has been created successfully
579
                patch := util.KVPatch{excludeAnno: nil, interfaceAnno: nil}
×
580
                for _, node := range patchNodes {
×
581
                        if err := util.PatchAnnotations(c.config.KubeClient.CoreV1().Nodes(), node, patch); err != nil {
×
582
                                klog.Errorf("failed to patch node %s: %v", node, err)
×
583
                        }
×
584
                }
585
        }()
586

587
        _, err = c.config.KubeOvnClient.KubeovnV1().ProviderNetworks().Create(context.Background(), &pn, metav1.CreateOptions{})
×
588
        if err != nil {
×
589
                klog.Errorf("failed to create provider network %s: %v", c.config.DefaultProviderName, err)
×
590
                return err
×
591
        }
×
592
        return nil
×
593
}
594

595
func (c *Controller) initDefaultVlan() error {
×
596
        if c.config.NetworkType != util.NetworkTypeVlan {
×
597
                return nil
×
598
        }
×
599

600
        if err := c.initDefaultProviderNetwork(); err != nil {
×
601
                klog.Error(err)
×
602
                return err
×
603
        }
×
604

605
        _, err := c.vlansLister.Get(c.config.DefaultVlanName)
×
606
        if err == nil {
×
607
                return nil
×
608
        }
×
609

610
        if !k8serrors.IsNotFound(err) {
×
611
                klog.Errorf("get default vlan %s failed: %v", c.config.DefaultVlanName, err)
×
612
                return err
×
613
        }
×
614

615
        if c.config.DefaultVlanID < 0 || c.config.DefaultVlanID > 4095 {
×
616
                return errors.New("the default vlan id is not between 1-4095")
×
617
        }
×
618

619
        defaultVlan := kubeovnv1.Vlan{
×
620
                ObjectMeta: metav1.ObjectMeta{Name: c.config.DefaultVlanName},
×
621
                Spec: kubeovnv1.VlanSpec{
×
622
                        ID:       c.config.DefaultVlanID,
×
623
                        Provider: c.config.DefaultProviderName,
×
624
                },
×
625
        }
×
626

×
627
        _, err = c.config.KubeOvnClient.KubeovnV1().Vlans().Create(context.Background(), &defaultVlan, metav1.CreateOptions{})
×
628
        if err != nil {
×
629
                klog.Errorf("failed to create vlan %s: %v", defaultVlan.Name, err)
×
630
                return err
×
631
        }
×
632
        return nil
×
633
}
634

635
func (c *Controller) syncIPCR() error {
×
636
        klog.Info("start to sync ips")
×
637
        ips, err := c.ipsLister.List(labels.Everything())
×
638
        if err != nil {
×
639
                if k8serrors.IsNotFound(err) {
×
640
                        return nil
×
641
                }
×
642
                klog.Error(err)
×
643
                return err
×
644
        }
645

646
        ipMap := strset.New(c.getVMLsps()...)
×
647
        for _, ip := range ips {
×
648
                if !ip.DeletionTimestamp.IsZero() {
×
649
                        klog.Infof("enqueue update for removing finalizer to delete ip %s", ip.Name)
×
650
                        c.updateIPQueue.Add(ip.Name)
×
651
                        continue
×
652
                }
653
                changed := false
×
654
                ip = ip.DeepCopy()
×
655
                if ipMap.Has(ip.Name) && ip.Spec.PodType == "" {
×
656
                        ip.Spec.PodType = util.VM
×
657
                        changed = true
×
658
                }
×
659

660
                v4IP, v6IP := util.SplitStringIP(ip.Spec.IPAddress)
×
661
                if ip.Spec.V4IPAddress == v4IP && ip.Spec.V6IPAddress == v6IP && !changed {
×
662
                        continue
×
663
                }
664

665
                ip.Spec.V4IPAddress = v4IP
×
666
                ip.Spec.V6IPAddress = v6IP
×
667
                _, err := c.config.KubeOvnClient.KubeovnV1().IPs().Update(context.Background(), ip, metav1.UpdateOptions{})
×
668
                if err != nil {
×
669
                        klog.Errorf("failed to sync crd ip %s: %v", ip.Spec.IPAddress, err)
×
670
                        return err
×
671
                }
×
672
        }
673
        return nil
×
674
}
675

676
func (c *Controller) syncSubnetCR() error {
×
677
        klog.Info("start to sync subnets")
×
678
        subnets, err := c.subnetsLister.List(labels.Everything())
×
679
        if err != nil {
×
680
                if k8serrors.IsNotFound(err) {
×
681
                        return nil
×
682
                }
×
683
                klog.Error(err)
×
684
                return err
×
685
        }
686
        for _, cachedSubnet := range subnets {
×
687
                subnet := cachedSubnet.DeepCopy()
×
688
                if !subnet.Status.IsReady() {
×
689
                        klog.Warningf("subnet %s is not ready", subnet.Name)
×
690
                        continue
×
691
                }
692
                if util.CheckProtocol(subnet.Spec.CIDRBlock) == kubeovnv1.ProtocolDual {
×
693
                        subnet, err = c.calcDualSubnetStatusIP(subnet)
×
694
                } else {
×
695
                        subnet, err = c.calcSubnetStatusIP(subnet)
×
696
                }
×
697
                if err != nil {
×
698
                        klog.Errorf("failed to calculate subnet %s used ip: %v", cachedSubnet.Name, err)
×
699
                        return err
×
700
                }
×
701

702
                // only sync subnet spec enableEcmp when subnet.Spec.EnableEcmp is false and c.config.EnableEcmp is true
703
                if subnet.Spec.GatewayType == kubeovnv1.GWCentralizedType && !subnet.Spec.EnableEcmp && subnet.Spec.EnableEcmp != c.config.EnableEcmp {
×
704
                        subnet, err = c.subnetsLister.Get(subnet.Name)
×
705
                        if err != nil {
×
706
                                klog.Errorf("failed to get subnet %s: %v", subnet.Name, err)
×
707
                                return err
×
708
                        }
×
709

710
                        subnet.Spec.EnableEcmp = c.config.EnableEcmp
×
711
                        if _, err := c.config.KubeOvnClient.KubeovnV1().Subnets().Update(context.Background(), subnet, metav1.UpdateOptions{}); err != nil {
×
712
                                klog.Errorf("failed to sync subnet spec enableEcmp with kube-ovn-controller config enableEcmp %s: %v", subnet.Name, err)
×
713
                                return err
×
714
                        }
×
715
                }
716
        }
717
        return nil
×
718
}
719

720
func (c *Controller) syncVpcNatGatewayCR() error {
×
721
        klog.Info("start to sync crd vpc nat gw")
×
722
        gws, err := c.vpcNatGatewayLister.List(labels.Everything())
×
723
        if err != nil {
×
724
                klog.Errorf("failed to list vpc nat gateway, %v", err)
×
725
                return err
×
726
        }
×
727
        if len(gws) == 0 {
×
728
                return nil
×
729
        }
×
730
        // get vpc nat gateway enable state
731
        cm, err := c.configMapsLister.ConfigMaps(c.config.PodNamespace).Get(util.VpcNatGatewayConfig)
×
732
        if err != nil && !k8serrors.IsNotFound(err) {
×
733
                klog.Errorf("failed to get config map %s, %v", util.VpcNatGatewayConfig, err)
×
734
                return err
×
735
        }
×
736
        if k8serrors.IsNotFound(err) || cm.Data["enable-vpc-nat-gw"] == "false" {
×
737
                return nil
×
738
        }
×
739
        // get vpc nat gateway image
740
        cm, err = c.configMapsLister.ConfigMaps(c.config.PodNamespace).Get(util.VpcNatConfig)
×
741
        if err != nil {
×
742
                if k8serrors.IsNotFound(err) {
×
743
                        klog.Errorf("should set config map for vpc-nat-gateway %s, %v", util.VpcNatConfig, err)
×
744
                        return err
×
745
                }
×
746
                klog.Errorf("failed to get config map %s, %v", util.VpcNatConfig, err)
×
747
                return err
×
748
        }
749

750
        if cm.Data["image"] == "" {
×
751
                err = errors.New("should set image for vpc-nat-gateway pod")
×
752
                klog.Error(err)
×
753
                return err
×
754
        }
×
755

756
        for _, gw := range gws {
×
757
                if err := c.updateCrdNatGwLabels(gw.Name, ""); err != nil {
×
758
                        klog.Errorf("failed to update nat gw %s: %v", gw.Name, err)
×
759
                        return err
×
760
                }
×
761
        }
762
        return nil
×
763
}
764

765
func (c *Controller) syncVlanCR() error {
×
766
        klog.Info("start to sync vlans")
×
767
        vlans, err := c.vlansLister.List(labels.Everything())
×
768
        if err != nil {
×
769
                if k8serrors.IsNotFound(err) {
×
770
                        return nil
×
771
                }
×
772
                klog.Error(err)
×
773
                return err
×
774
        }
775

776
        for _, vlan := range vlans {
×
777
                var needUpdate bool
×
778
                newVlan := vlan.DeepCopy()
×
779
                if newVlan.Spec.VlanID != 0 && newVlan.Spec.ID == 0 {
×
780
                        newVlan.Spec.ID = newVlan.Spec.VlanID
×
781
                        newVlan.Spec.VlanID = 0
×
782
                        needUpdate = true
×
783
                }
×
784
                if newVlan.Spec.ProviderInterfaceName != "" && newVlan.Spec.Provider == "" {
×
785
                        newVlan.Spec.Provider = newVlan.Spec.ProviderInterfaceName
×
786
                        newVlan.Spec.ProviderInterfaceName = ""
×
787
                        needUpdate = true
×
788
                }
×
789
                if needUpdate {
×
790
                        if _, err = c.config.KubeOvnClient.KubeovnV1().Vlans().Update(context.Background(), newVlan, metav1.UpdateOptions{}); err != nil {
×
791
                                klog.Errorf("failed to update spec of vlan %s: %v", newVlan.Name, err)
×
792
                                return err
×
793
                        }
×
794
                }
795
        }
796

797
        return nil
×
798
}
799

800
func (c *Controller) batchMigrateNodeRoute(nodes []*v1.Node) error {
×
801
        start := time.Now()
×
802
        addPolicies := make([]*kubeovnv1.PolicyRoute, 0)
×
803
        delPolicies := make([]*kubeovnv1.PolicyRoute, 0)
×
804
        staticRoutes := make([]*kubeovnv1.StaticRoute, 0)
×
805
        externalIDsMap := make(map[string]map[string]string)
×
806
        delAsNames := make([]string, 0)
×
807
        for _, node := range nodes {
×
808
                if node.Annotations[util.AllocatedAnnotation] != "true" {
×
809
                        continue
×
810
                }
811
                nodeName := node.Name
×
812
                nodeIPv4, nodeIPv6 := util.GetNodeInternalIP(*node)
×
813
                joinAddrV4, joinAddrV6 := util.SplitStringIP(node.Annotations[util.IPAddressAnnotation])
×
814
                if nodeIPv4 != "" && joinAddrV4 != "" {
×
815
                        buildNodeRoute(4, nodeName, joinAddrV4, nodeIPv4, &addPolicies, &delPolicies, &staticRoutes, externalIDsMap, &delAsNames)
×
816
                }
×
817
                if nodeIPv6 != "" && joinAddrV6 != "" {
×
818
                        buildNodeRoute(6, nodeName, joinAddrV6, nodeIPv6, &addPolicies, &delPolicies, &staticRoutes, externalIDsMap, &delAsNames)
×
819
                }
×
820
        }
821

822
        if err := c.batchAddPolicyRouteToVpc(c.config.ClusterRouter, addPolicies, externalIDsMap); err != nil {
×
823
                klog.Errorf("failed to batch add logical router policy for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
824
                return err
×
825
        }
×
826
        if err := c.batchDeleteStaticRouteFromVpc(c.config.ClusterRouter, staticRoutes); err != nil {
×
827
                klog.Errorf("failed to batch delete  obsolete logical router static route for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
828
                return err
×
829
        }
×
830
        if err := c.batchDeletePolicyRouteFromVpc(c.config.ClusterRouter, delPolicies); err != nil {
×
831
                klog.Errorf("failed to batch delete obsolete logical router policy for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
832
                return err
×
833
        }
×
834
        if err := c.OVNNbClient.BatchDeleteAddressSetByNames(delAsNames); err != nil {
×
835
                klog.Errorf("failed to batch delete obsolete address set for asNames %v nodes %d: %v", delAsNames, len(nodes), err)
×
836
                return err
×
837
        }
×
838
        klog.V(3).Infof("take to %v batch migrate node route for router: %s priority: %d add policy len: %d extrenalID len: %d del policy len: %d del address set len: %d",
×
839
                time.Since(start), c.config.ClusterRouter, util.NodeRouterPolicyPriority, len(addPolicies), len(externalIDsMap), len(delPolicies), len(delAsNames))
×
840

×
841
        return nil
×
842
}
843

844
func buildNodeRoute(af int, nodeName, nexthop, ip string, addPolicies, delPolicies *[]*kubeovnv1.PolicyRoute, staticRoutes *[]*kubeovnv1.StaticRoute, externalIDsMap map[string]map[string]string, delAsNames *[]string) {
×
845
        var (
×
846
                match       = fmt.Sprintf("ip%d.dst == %s", af, ip)
×
847
                action      = kubeovnv1.PolicyRouteActionReroute
×
848
                externalIDs = map[string]string{
×
849
                        "vendor": util.CniTypeName,
×
850
                        "node":   nodeName,
×
851
                }
×
852
        )
×
853
        *addPolicies = append(*addPolicies, &kubeovnv1.PolicyRoute{
×
854
                Priority:  util.NodeRouterPolicyPriority,
×
855
                Match:     match,
×
856
                Action:    action,
×
857
                NextHopIP: nexthop,
×
858
        })
×
859
        externalIDsMap[buildExternalIDsMapKey(match, string(action), util.NodeRouterPolicyPriority)] = externalIDs
×
860
        *staticRoutes = append(*staticRoutes, &kubeovnv1.StaticRoute{
×
861
                Policy:     kubeovnv1.PolicyDst,
×
862
                RouteTable: util.MainRouteTable,
×
863
                NextHopIP:  "",
×
864
                CIDR:       ip,
×
865
        })
×
866
        asName := nodeUnderlayAddressSetName(nodeName, af)
×
867
        obsoleteMatch := fmt.Sprintf("ip%d.dst == %s && ip%d.src != $%s", af, ip, af, asName)
×
868
        *delPolicies = append(*delPolicies, &kubeovnv1.PolicyRoute{
×
869
                Match:    obsoleteMatch,
×
870
                Priority: util.NodeRouterPolicyPriority,
×
871
        })
×
872
        *delAsNames = append(*delAsNames, asName)
×
873
}
×
874

875
func (c *Controller) syncNodeRoutes() error {
×
876
        nodes, err := c.nodesLister.List(labels.Everything())
×
877
        if err != nil {
×
878
                klog.Errorf("failed to list nodes: %v", err)
×
879
                return err
×
880
        }
×
881

882
        if err := c.batchMigrateNodeRoute(nodes); err != nil {
×
883
                klog.Errorf("failed to batch migrate node routes: %v", err)
×
884
                return err
×
885
        }
×
886

887
        if err := c.addNodeGatewayStaticRoute(); err != nil {
×
888
                klog.Errorf("failed to add static route for node gateway")
×
889
                return err
×
890
        }
×
891
        return nil
×
892
}
893

894
func (c *Controller) initNodeChassis() error {
×
895
        nodes, err := c.nodesLister.List(labels.Everything())
×
896
        if err != nil {
×
897
                klog.Errorf("failed to list nodes: %v", err)
×
898
                return err
×
899
        }
×
900
        chassises, err := c.OVNSbClient.GetKubeOvnChassisses()
×
901
        if err != nil {
×
902
                klog.Errorf("failed to get chassis nodes: %v", err)
×
903
                return err
×
904
        }
×
905
        chassisNodes := make(map[string]string, len(*chassises))
×
906
        for _, chassis := range *chassises {
×
907
                chassisNodes[chassis.Name] = chassis.Hostname
×
908
        }
×
909
        for _, node := range nodes {
×
910
                if err := c.UpdateChassisTag(node); err != nil {
×
911
                        klog.Error(err)
×
912
                        if _, ok := err.(*ErrChassisNotFound); !ok {
×
913
                                return err
×
914
                        }
×
915
                }
916
        }
917
        return nil
×
918
}
919

920
func migrateFinalizers(c client.Client, list client.ObjectList, getObjectItem func(int) (client.Object, client.Object)) error {
×
921
        if err := c.List(context.Background(), list); err != nil {
×
922
                klog.Errorf("failed to list objects: %v", err)
×
923
                return err
×
924
        }
×
925

926
        var i int
×
927
        var cachedObj, patchedObj client.Object
×
928
        for {
×
929
                if cachedObj, patchedObj = getObjectItem(i); cachedObj == nil {
×
930
                        break
×
931
                }
932
                if !controllerutil.ContainsFinalizer(cachedObj, util.DepreciatedFinalizerName) {
×
933
                        i++
×
934
                        continue
×
935
                }
936
                controllerutil.RemoveFinalizer(patchedObj, util.DepreciatedFinalizerName)
×
937
                if cachedObj.GetDeletionTimestamp() == nil {
×
938
                        // if the object is not being deleted, add the new finalizer
×
939
                        controllerutil.AddFinalizer(patchedObj, util.KubeOVNControllerFinalizer)
×
940
                }
×
941
                if err := c.Patch(context.Background(), patchedObj, client.MergeFrom(cachedObj)); client.IgnoreNotFound(err) != nil {
×
942
                        klog.Errorf("failed to sync finalizers for %s %s: %v",
×
943
                                patchedObj.GetObjectKind().GroupVersionKind().Kind,
×
944
                                cache.MetaObjectToName(patchedObj), err)
×
945
                        return err
×
946
                }
×
947
                i++
×
948
        }
949

950
        return nil
×
951
}
952

953
func (c *Controller) syncFinalizers() error {
×
954
        cl, err := client.New(config.GetConfigOrDie(), client.Options{})
×
955
        if err != nil {
×
956
                klog.Errorf("failed to create client: %v", err)
×
957
                return err
×
958
        }
×
959

960
        // migrate depreciated finalizer to new finalizer
961
        klog.Info("start to sync finalizers")
×
962
        if err := c.syncIPFinalizer(cl); err != nil {
×
963
                klog.Errorf("failed to sync ip finalizer: %v", err)
×
964
                return err
×
965
        }
×
966
        if err := c.syncOvnDnatFinalizer(cl); err != nil {
×
967
                klog.Errorf("failed to sync ovn dnat finalizer: %v", err)
×
968
                return err
×
969
        }
×
970
        if err := c.syncOvnEipFinalizer(cl); err != nil {
×
971
                klog.Errorf("failed to sync ovn eip finalizer: %v", err)
×
972
                return err
×
973
        }
×
974
        if err := c.syncOvnFipFinalizer(cl); err != nil {
×
975
                klog.Errorf("failed to sync ovn fip finalizer: %v", err)
×
976
                return err
×
977
        }
×
978
        if err := c.syncOvnSnatFinalizer(cl); err != nil {
×
979
                klog.Errorf("failed to sync ovn snat finalizer: %v", err)
×
980
                return err
×
981
        }
×
982
        if err := c.syncQoSPolicyFinalizer(cl); err != nil {
×
983
                klog.Errorf("failed to sync qos policy finalizer: %v", err)
×
984
                return err
×
985
        }
×
986
        if err := c.syncSubnetFinalizer(cl); err != nil {
×
987
                klog.Errorf("failed to sync subnet finalizer: %v", err)
×
988
                return err
×
989
        }
×
990
        if err := c.syncVipFinalizer(cl); err != nil {
×
991
                klog.Errorf("failed to sync vip finalizer: %v", err)
×
992
                return err
×
993
        }
×
994
        if err := c.syncIptablesEipFinalizer(cl); err != nil {
×
995
                klog.Errorf("failed to sync iptables eip finalizer: %v", err)
×
996
                return err
×
997
        }
×
998
        if err := c.syncIptablesFipFinalizer(cl); err != nil {
×
999
                klog.Errorf("failed to sync iptables fip finalizer: %v", err)
×
1000
                return err
×
1001
        }
×
1002
        if err := c.syncIptablesDnatFinalizer(cl); err != nil {
×
1003
                klog.Errorf("failed to sync iptables dnat finalizer: %v", err)
×
1004
                return err
×
1005
        }
×
1006
        if err := c.syncIptablesSnatFinalizer(cl); err != nil {
×
1007
                klog.Errorf("failed to sync iptables snat finalizer: %v", err)
×
1008
                return err
×
1009
        }
×
1010
        klog.Info("sync finalizers done")
×
1011
        return nil
×
1012
}
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc