• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

kubeovn / kube-ovn / 15838479916

24 Jun 2025 12:52AM UTC coverage: 21.544% (-0.03%) from 21.569%
15838479916

push

github

web-flow
fix duplicate acls because of parentkey (#5357)

* fix duplicate acls because of parentkey

Signed-off-by: clyi <clyi@alauda.io>

---------

Signed-off-by: clyi <clyi@alauda.io>

0 of 61 new or added lines in 2 files covered. (0.0%)

2 existing lines in 1 file now uncovered.

10479 of 48640 relevant lines covered (21.54%)

0.25 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

0.0
/pkg/controller/init.go
1
package controller
2

3
import (
4
        "context"
5
        "errors"
6
        "fmt"
7
        "strings"
8
        "time"
9

10
        "github.com/scylladb/go-set/strset"
11
        v1 "k8s.io/api/core/v1"
12
        k8serrors "k8s.io/apimachinery/pkg/api/errors"
13
        metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
14
        "k8s.io/apimachinery/pkg/labels"
15
        "k8s.io/apimachinery/pkg/types"
16
        "k8s.io/client-go/tools/cache"
17
        "k8s.io/klog/v2"
18
        "k8s.io/utils/ptr"
19
        "sigs.k8s.io/controller-runtime/pkg/client"
20
        "sigs.k8s.io/controller-runtime/pkg/client/config"
21
        "sigs.k8s.io/controller-runtime/pkg/controller/controllerutil"
22

23
        kubeovnv1 "github.com/kubeovn/kube-ovn/pkg/apis/kubeovn/v1"
24
        "github.com/kubeovn/kube-ovn/pkg/ovs"
25
        "github.com/kubeovn/kube-ovn/pkg/ovsdb/ovnnb"
26
        "github.com/kubeovn/kube-ovn/pkg/util"
27
)
28

29
func (c *Controller) InitOVN() error {
×
30
        var err error
×
NEW
31

×
NEW
32
        if err = c.migrateACLForVersionCompat(); err != nil {
×
NEW
33
                klog.Errorf("failed to sync the older acl : %v", err)
×
34
                return err
×
35
        }
×
36

37
        if err = c.InitDefaultVpc(); err != nil {
×
38
                klog.Errorf("init default vpc failed: %v", err)
×
39
                return err
×
40
        }
×
41

42
        if err = c.initClusterRouter(); err != nil {
×
43
                klog.Errorf("init cluster router failed: %v", err)
×
44
                return err
×
45
        }
×
46

47
        if c.config.EnableLb {
×
48
                if err = c.initLoadBalancer(); err != nil {
×
49
                        klog.Errorf("init load balancer failed: %v", err)
×
50
                        return err
×
51
                }
×
52
        }
53

54
        if err = c.initDefaultVlan(); err != nil {
×
55
                klog.Errorf("init default vlan failed: %v", err)
×
56
                return err
×
57
        }
×
58

59
        if err = c.initNodeSwitch(); err != nil {
×
60
                klog.Errorf("init node switch failed: %v", err)
×
61
                return err
×
62
        }
×
63

64
        if err = c.initDefaultLogicalSwitch(); err != nil {
×
65
                klog.Errorf("init default switch failed: %v", err)
×
66
                return err
×
67
        }
×
68

69
        return nil
×
70
}
71

NEW
72
func (c *Controller) migrateACLForVersionCompat() error {
×
NEW
73
        // migrate tier field of ACL rules created in versions prior to v1.13.0
×
NEW
74
        // after upgrading, the tier field has a default value of zero, which is not the value used in versions >= v1.13.0
×
NEW
75
        // we need to migrate the tier field to the correct value
×
NEW
76
        if err := c.OVNNbClient.MigrateACLTier(); err != nil {
×
NEW
77
                klog.Errorf("failed to migrate ACL tier: %v", err)
×
NEW
78
                return err
×
NEW
79
        }
×
80
        // clean all no parent key acls
NEW
81
        if err := c.OVNNbClient.CleanNoParentKeyAcls(); err != nil {
×
NEW
82
                klog.Errorf("failed to clean all no parent key acls: %v", err)
×
NEW
83
                return err
×
NEW
84
        }
×
NEW
85
        return nil
×
86
}
87

88
func (c *Controller) InitDefaultVpc() error {
×
89
        cachedVpc, err := c.vpcsLister.Get(c.config.ClusterRouter)
×
90
        if err != nil {
×
91
                if !k8serrors.IsNotFound(err) {
×
92
                        klog.Errorf("failed to get default vpc %q: %v", c.config.ClusterRouter, err)
×
93
                        return err
×
94
                }
×
95
                // create default vpc
96
                vpc := &kubeovnv1.Vpc{
×
97
                        ObjectMeta: metav1.ObjectMeta{Name: c.config.ClusterRouter},
×
98
                }
×
99
                cachedVpc, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().Create(context.Background(), vpc, metav1.CreateOptions{})
×
100
                if err != nil {
×
101
                        klog.Errorf("failed to create default vpc %q: %v", c.config.ClusterRouter, err)
×
102
                        return err
×
103
                }
×
104
        }
105

106
        // update default vpc status
107
        vpc := cachedVpc.DeepCopy()
×
108
        if !vpc.Status.Default || !vpc.Status.Standby ||
×
109
                vpc.Status.Router != c.config.ClusterRouter ||
×
110
                vpc.Status.DefaultLogicalSwitch != c.config.DefaultLogicalSwitch {
×
111
                vpc.Status.Standby = true
×
112
                vpc.Status.Default = true
×
113
                vpc.Status.Router = c.config.ClusterRouter
×
114
                vpc.Status.DefaultLogicalSwitch = c.config.DefaultLogicalSwitch
×
115

×
116
                if _, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().UpdateStatus(context.Background(), vpc, metav1.UpdateOptions{}); err != nil {
×
117
                        klog.Errorf("failed to update default vpc %q: %v", c.config.ClusterRouter, err)
×
118
                        return err
×
119
                }
×
120
        }
121

122
        return nil
×
123
}
124

125
// InitDefaultLogicalSwitch init the default logical switch for ovn network
126
func (c *Controller) initDefaultLogicalSwitch() error {
×
127
        subnet, err := c.subnetsLister.Get(c.config.DefaultLogicalSwitch)
×
128
        if err == nil {
×
129
                if subnet != nil && util.CheckProtocol(c.config.DefaultCIDR) != util.CheckProtocol(subnet.Spec.CIDRBlock) {
×
130
                        // single-stack upgrade to dual-stack
×
131
                        if util.CheckProtocol(c.config.DefaultCIDR) == kubeovnv1.ProtocolDual {
×
132
                                subnet := subnet.DeepCopy()
×
133
                                subnet.Spec.CIDRBlock = c.config.DefaultCIDR
×
134
                                if _, err = c.formatSubnet(subnet); err != nil {
×
135
                                        klog.Errorf("init format subnet %s failed: %v", c.config.DefaultLogicalSwitch, err)
×
136
                                        return err
×
137
                                }
×
138
                        }
139
                }
140
                return nil
×
141
        }
142

143
        if !k8serrors.IsNotFound(err) {
×
144
                klog.Errorf("get default subnet %s failed: %v", c.config.DefaultLogicalSwitch, err)
×
145
                return err
×
146
        }
×
147

148
        defaultSubnet := kubeovnv1.Subnet{
×
149
                ObjectMeta: metav1.ObjectMeta{Name: c.config.DefaultLogicalSwitch},
×
150
                Spec: kubeovnv1.SubnetSpec{
×
151
                        Vpc:                 c.config.ClusterRouter,
×
152
                        Default:             true,
×
153
                        Provider:            util.OvnProvider,
×
154
                        CIDRBlock:           c.config.DefaultCIDR,
×
155
                        Gateway:             c.config.DefaultGateway,
×
156
                        GatewayNode:         "",
×
157
                        DisableGatewayCheck: !c.config.DefaultGatewayCheck,
×
158
                        ExcludeIps:          strings.Split(c.config.DefaultExcludeIps, ","),
×
159
                        NatOutgoing:         true,
×
160
                        GatewayType:         kubeovnv1.GWDistributedType,
×
161
                        Protocol:            util.CheckProtocol(c.config.DefaultCIDR),
×
162
                        EnableLb:            &c.config.EnableLb,
×
163
                },
×
164
        }
×
165
        if c.config.NetworkType == util.NetworkTypeVlan {
×
166
                defaultSubnet.Spec.Vlan = c.config.DefaultVlanName
×
167
                if c.config.DefaultLogicalGateway && c.config.DefaultU2OInterconnection {
×
168
                        err = errors.New("logicalGateway and u2oInterconnection can't be opened at the same time")
×
169
                        klog.Error(err)
×
170
                        return err
×
171
                }
×
172
                defaultSubnet.Spec.LogicalGateway = c.config.DefaultLogicalGateway
×
173
                defaultSubnet.Spec.U2OInterconnection = c.config.DefaultU2OInterconnection
×
174
        }
175

176
        if _, err = c.config.KubeOvnClient.KubeovnV1().Subnets().Create(context.Background(), &defaultSubnet, metav1.CreateOptions{}); err != nil {
×
177
                klog.Errorf("failed to create default subnet %q: %v", c.config.DefaultLogicalSwitch, err)
×
178
                return err
×
179
        }
×
180
        return nil
×
181
}
182

183
// InitNodeSwitch init node switch to connect host and pod
184
func (c *Controller) initNodeSwitch() error {
×
185
        subnet, err := c.subnetsLister.Get(c.config.NodeSwitch)
×
186
        if err == nil {
×
187
                if util.CheckProtocol(c.config.NodeSwitchCIDR) == kubeovnv1.ProtocolDual && util.CheckProtocol(subnet.Spec.CIDRBlock) != kubeovnv1.ProtocolDual {
×
188
                        // single-stack upgrade to dual-stack
×
189
                        subnet := subnet.DeepCopy()
×
190
                        subnet.Spec.CIDRBlock = c.config.NodeSwitchCIDR
×
191
                        if _, err = c.formatSubnet(subnet); err != nil {
×
192
                                klog.Errorf("init format subnet %s failed: %v", c.config.NodeSwitch, err)
×
193
                                return err
×
194
                        }
×
195
                } else {
×
196
                        c.config.NodeSwitchCIDR = subnet.Spec.CIDRBlock
×
197
                }
×
198
                return nil
×
199
        }
200

201
        if !k8serrors.IsNotFound(err) {
×
202
                klog.Errorf("get node subnet %s failed: %v", c.config.NodeSwitch, err)
×
203
                return err
×
204
        }
×
205

206
        nodeSubnet := kubeovnv1.Subnet{
×
207
                ObjectMeta: metav1.ObjectMeta{Name: c.config.NodeSwitch},
×
208
                Spec: kubeovnv1.SubnetSpec{
×
209
                        Vpc:                    c.config.ClusterRouter,
×
210
                        Default:                false,
×
211
                        Provider:               util.OvnProvider,
×
212
                        CIDRBlock:              c.config.NodeSwitchCIDR,
×
213
                        Gateway:                c.config.NodeSwitchGateway,
×
214
                        GatewayNode:            "",
×
215
                        ExcludeIps:             strings.Split(c.config.NodeSwitchGateway, ","),
×
216
                        Protocol:               util.CheckProtocol(c.config.NodeSwitchCIDR),
×
217
                        DisableInterConnection: true,
×
218
                },
×
219
        }
×
220

×
221
        if _, err = c.config.KubeOvnClient.KubeovnV1().Subnets().Create(context.Background(), &nodeSubnet, metav1.CreateOptions{}); err != nil {
×
222
                klog.Errorf("failed to create node subnet %q: %v", c.config.NodeSwitch, err)
×
223
                return err
×
224
        }
×
225
        return nil
×
226
}
227

228
// InitClusterRouter init cluster router to connect different logical switches
229
func (c *Controller) initClusterRouter() error {
×
230
        if err := c.OVNNbClient.CreateLogicalRouter(c.config.ClusterRouter); err != nil {
×
231
                klog.Errorf("create logical router %s failed: %v", c.config.ClusterRouter, err)
×
232
                return err
×
233
        }
×
234

235
        lr, err := c.OVNNbClient.GetLogicalRouter(c.config.ClusterRouter, false)
×
236
        if err != nil {
×
237
                klog.Errorf("get logical router %s failed: %v", c.config.ClusterRouter, err)
×
238
                return err
×
239
        }
×
240

241
        lr.Options = map[string]string{"always_learn_from_arp_request": "false", "dynamic_neigh_routers": "true", "mac_binding_age_threshold": "300"}
×
242
        err = c.OVNNbClient.UpdateLogicalRouter(lr, &lr.Options)
×
243
        if err != nil {
×
244
                klog.Errorf("update logical router %s failed: %v", c.config.ClusterRouter, err)
×
245
                return err
×
246
        }
×
247

248
        return nil
×
249
}
250

251
func (c *Controller) initLB(name, protocol string, sessionAffinity bool) error {
×
252
        protocol = strings.ToLower(protocol)
×
253

×
254
        var (
×
255
                selectFields string
×
256
                err          error
×
257
        )
×
258

×
259
        if sessionAffinity {
×
260
                selectFields = ovnnb.LoadBalancerSelectionFieldsIPSrc
×
261
        }
×
262

263
        if err = c.OVNNbClient.CreateLoadBalancer(name, protocol, selectFields); err != nil {
×
264
                klog.Errorf("create load balancer %s: %v", name, err)
×
265
                return err
×
266
        }
×
267

268
        if sessionAffinity {
×
269
                if err = c.OVNNbClient.SetLoadBalancerAffinityTimeout(name, util.DefaultServiceSessionStickinessTimeout); err != nil {
×
270
                        klog.Errorf("failed to set affinity timeout of %s load balancer %s: %v", protocol, name, err)
×
271
                        return err
×
272
                }
×
273
        }
274

275
        err = c.OVNNbClient.SetLoadBalancerPreferLocalBackend(name, c.config.EnableOVNLBPreferLocal)
×
276
        if err != nil {
×
277
                klog.Errorf("failed to set prefer local backend for load balancer %s: %v", name, err)
×
278
                return err
×
279
        }
×
280

281
        return nil
×
282
}
283

284
// InitLoadBalancer init the default tcp and udp cluster loadbalancer
285
func (c *Controller) initLoadBalancer() error {
×
286
        vpcs, err := c.vpcsLister.List(labels.Everything())
×
287
        if err != nil {
×
288
                klog.Errorf("failed to list vpc: %v", err)
×
289
                return err
×
290
        }
×
291

292
        for _, cachedVpc := range vpcs {
×
293
                vpc := cachedVpc.DeepCopy()
×
294
                vpcLb := c.GenVpcLoadBalancer(vpc.Name)
×
295
                if err = c.initLB(vpcLb.TCPLoadBalancer, string(v1.ProtocolTCP), false); err != nil {
×
296
                        klog.Error(err)
×
297
                        return err
×
298
                }
×
299
                if err = c.initLB(vpcLb.TCPSessLoadBalancer, string(v1.ProtocolTCP), true); err != nil {
×
300
                        klog.Error(err)
×
301
                        return err
×
302
                }
×
303
                if err = c.initLB(vpcLb.UDPLoadBalancer, string(v1.ProtocolUDP), false); err != nil {
×
304
                        klog.Error(err)
×
305
                        return err
×
306
                }
×
307
                if err = c.initLB(vpcLb.UDPSessLoadBalancer, string(v1.ProtocolUDP), true); err != nil {
×
308
                        klog.Error(err)
×
309
                        return err
×
310
                }
×
311
                if err = c.initLB(vpcLb.SctpLoadBalancer, string(v1.ProtocolSCTP), false); err != nil {
×
312
                        klog.Error(err)
×
313
                        return err
×
314
                }
×
315
                if err = c.initLB(vpcLb.SctpSessLoadBalancer, string(v1.ProtocolSCTP), true); err != nil {
×
316
                        klog.Error(err)
×
317
                        return err
×
318
                }
×
319

320
                vpc.Status.TCPLoadBalancer = vpcLb.TCPLoadBalancer
×
321
                vpc.Status.TCPSessionLoadBalancer = vpcLb.TCPSessLoadBalancer
×
322
                vpc.Status.UDPLoadBalancer = vpcLb.UDPLoadBalancer
×
323
                vpc.Status.UDPSessionLoadBalancer = vpcLb.UDPSessLoadBalancer
×
324
                vpc.Status.SctpLoadBalancer = vpcLb.SctpLoadBalancer
×
325
                vpc.Status.SctpSessionLoadBalancer = vpcLb.SctpSessLoadBalancer
×
326
                bytes, err := vpc.Status.Bytes()
×
327
                if err != nil {
×
328
                        klog.Error(err)
×
329
                        return err
×
330
                }
×
331
                if _, err = c.config.KubeOvnClient.KubeovnV1().Vpcs().Patch(context.Background(), vpc.Name, types.MergePatchType, bytes, metav1.PatchOptions{}, "status"); err != nil {
×
332
                        klog.Error(err)
×
333
                        return err
×
334
                }
×
335
        }
336
        return nil
×
337
}
338

339
func (c *Controller) InitIPAM() error {
×
340
        start := time.Now()
×
341
        subnets, err := c.subnetsLister.List(labels.Everything())
×
342
        if err != nil {
×
343
                klog.Errorf("failed to list subnet: %v", err)
×
344
                return err
×
345
        }
×
346
        subnetProviderMaps := make(map[string]string, len(subnets))
×
347
        for _, subnet := range subnets {
×
348
                klog.Infof("Init subnet %s", subnet.Name)
×
349

×
350
                subnetProviderMaps[subnet.Name] = subnet.Spec.Provider
×
351

×
352
                if err := c.ipam.AddOrUpdateSubnet(subnet.Name, subnet.Spec.CIDRBlock, subnet.Spec.Gateway, subnet.Spec.ExcludeIps); err != nil {
×
353
                        klog.Errorf("failed to init subnet %s: %v", subnet.Name, err)
×
354
                }
×
355

356
                u2oInterconnName := fmt.Sprintf(util.U2OInterconnName, subnet.Spec.Vpc, subnet.Name)
×
357
                u2oInterconnLrpName := fmt.Sprintf("%s-%s", subnet.Spec.Vpc, subnet.Name)
×
358
                if subnet.Status.U2OInterconnectionIP != "" {
×
359
                        var mac *string
×
360
                        if subnet.Status.U2OInterconnectionMAC != "" {
×
361
                                mac = ptr.To(subnet.Status.U2OInterconnectionMAC)
×
362
                        } else {
×
363
                                lrp, err := c.OVNNbClient.GetLogicalRouterPort(u2oInterconnLrpName, true)
×
364
                                if err != nil {
×
365
                                        klog.Errorf("failed to get logical router port %s: %v", u2oInterconnLrpName, err)
×
366
                                        return err
×
367
                                }
×
368
                                if lrp != nil {
×
369
                                        mac = ptr.To(lrp.MAC)
×
370
                                }
×
371
                        }
372
                        if _, _, _, err = c.ipam.GetStaticAddress(u2oInterconnName, u2oInterconnLrpName, subnet.Status.U2OInterconnectionIP, mac, subnet.Name, true); err != nil {
×
373
                                klog.Errorf("failed to init subnet %q u2o interconnection ip to ipam %v", subnet.Name, err)
×
374
                        }
×
375
                }
376
        }
377

378
        ippools, err := c.ippoolLister.List(labels.Everything())
×
379
        if err != nil {
×
380
                klog.Errorf("failed to list ippool: %v", err)
×
381
                return err
×
382
        }
×
383
        for _, ippool := range ippools {
×
384
                if err = c.ipam.AddOrUpdateIPPool(ippool.Spec.Subnet, ippool.Name, ippool.Spec.IPs); err != nil {
×
385
                        klog.Errorf("failed to init ippool %s: %v", ippool.Name, err)
×
386
                }
×
387
        }
388

389
        pods, err := c.podsLister.List(labels.Everything())
×
390
        if err != nil {
×
391
                klog.Errorf("failed to list pods: %v", err)
×
392
                return err
×
393
        }
×
394

395
        ips, err := c.ipsLister.List(labels.Everything())
×
396
        if err != nil {
×
397
                klog.Errorf("failed to list IPs: %v", err)
×
398
                return err
×
399
        }
×
400

401
        for _, ip := range ips {
×
402
                if !ip.DeletionTimestamp.IsZero() {
×
403
                        klog.Infof("enqueue update for removing finalizer to delete ip %s", ip.Name)
×
404
                        c.updateIPQueue.Add(ip.Name)
×
405
                        continue
×
406
                }
407
                // recover sts and kubevirt vm ip, other ip recover in later pod loop
408
                if ip.Spec.PodType != util.StatefulSet && ip.Spec.PodType != util.VM {
×
409
                        continue
×
410
                }
411

412
                var ipamKey string
×
413
                if ip.Spec.Namespace != "" {
×
414
                        ipamKey = fmt.Sprintf("%s/%s", ip.Spec.Namespace, ip.Spec.PodName)
×
415
                } else {
×
416
                        ipamKey = util.NodeLspName(ip.Spec.PodName)
×
417
                }
×
418
                if _, _, _, err = c.ipam.GetStaticAddress(ipamKey, ip.Name, ip.Spec.IPAddress, &ip.Spec.MacAddress, ip.Spec.Subnet, true); err != nil {
×
419
                        klog.Errorf("failed to init IPAM from IP CR %s: %v", ip.Name, err)
×
420
                }
×
421
        }
422

423
        for _, pod := range pods {
×
424
                if pod.Spec.HostNetwork {
×
425
                        continue
×
426
                }
427

428
                isAlive := isPodAlive(pod)
×
429
                isStsPod, _, _ := isStatefulSetPod(pod)
×
430
                if !isAlive && !isStsPod {
×
431
                        continue
×
432
                }
433

434
                podNets, err := c.getPodKubeovnNets(pod)
×
435
                if err != nil {
×
436
                        klog.Errorf("failed to get pod kubeovn nets %s.%s address %s: %v", pod.Name, pod.Namespace, pod.Annotations[util.IPAddressAnnotation], err)
×
437
                        continue
×
438
                }
439

440
                podType := getPodType(pod)
×
441
                podName := c.getNameByPod(pod)
×
442
                key := fmt.Sprintf("%s/%s", pod.Namespace, podName)
×
443
                for _, podNet := range podNets {
×
444
                        if pod.Annotations[fmt.Sprintf(util.AllocatedAnnotationTemplate, podNet.ProviderName)] == "true" {
×
445
                                portName := ovs.PodNameToPortName(podName, pod.Namespace, podNet.ProviderName)
×
446
                                ip := pod.Annotations[fmt.Sprintf(util.IPAddressAnnotationTemplate, podNet.ProviderName)]
×
447
                                mac := pod.Annotations[fmt.Sprintf(util.MacAddressAnnotationTemplate, podNet.ProviderName)]
×
448
                                _, _, _, err := c.ipam.GetStaticAddress(key, portName, ip, &mac, podNet.Subnet.Name, true)
×
449
                                if err != nil {
×
450
                                        klog.Errorf("failed to init pod %s.%s address %s: %v", podName, pod.Namespace, pod.Annotations[fmt.Sprintf(util.IPAddressAnnotationTemplate, podNet.ProviderName)], err)
×
451
                                } else {
×
452
                                        err = c.createOrUpdateIPCR(portName, podName, ip, mac, podNet.Subnet.Name, pod.Namespace, pod.Spec.NodeName, podType)
×
453
                                        if err != nil {
×
454
                                                klog.Errorf("failed to create/update ips CR %s.%s with ip address %s: %v", podName, pod.Namespace, ip, err)
×
455
                                        }
×
456
                                }
457

458
                                // Append ExternalIds is added in v1.7, used for upgrading from v1.6.3. It should be deleted now since v1.7 is not used anymore.
459
                        }
460
                }
461
        }
462

463
        vips, err := c.virtualIpsLister.List(labels.Everything())
×
464
        if err != nil {
×
465
                klog.Errorf("failed to list vips: %v", err)
×
466
                return err
×
467
        }
×
468
        for _, vip := range vips {
×
469
                provider, ok := subnetProviderMaps[vip.Spec.Subnet]
×
470
                if !ok {
×
471
                        klog.Errorf("failed to find subnet %s for vip %s", vip.Spec.Subnet, vip.Name)
×
472
                        continue
×
473
                }
474
                portName := ovs.PodNameToPortName(vip.Name, vip.Spec.Namespace, provider)
×
475
                if _, _, _, err = c.ipam.GetStaticAddress(vip.Name, portName, vip.Status.V4ip, &vip.Status.Mac, vip.Spec.Subnet, true); err != nil {
×
476
                        klog.Errorf("failed to init ipam from vip cr %s: %v", vip.Name, err)
×
477
                }
×
478
        }
479

480
        eips, err := c.iptablesEipsLister.List(labels.Everything())
×
481
        if err != nil {
×
482
                klog.Errorf("failed to list EIPs: %v", err)
×
483
                return err
×
484
        }
×
485
        for _, eip := range eips {
×
486
                externalNetwork := util.GetExternalNetwork(eip.Spec.ExternalSubnet)
×
487
                if _, _, _, err = c.ipam.GetStaticAddress(eip.Name, eip.Name, eip.Status.IP, &eip.Spec.MacAddress, externalNetwork, true); err != nil {
×
488
                        klog.Errorf("failed to init ipam from iptables eip cr %s: %v", eip.Name, err)
×
489
                }
×
490
        }
491

492
        oeips, err := c.ovnEipsLister.List(labels.Everything())
×
493
        if err != nil {
×
494
                klog.Errorf("failed to list ovn eips: %v", err)
×
495
                return err
×
496
        }
×
497
        for _, oeip := range oeips {
×
498
                if _, _, _, err = c.ipam.GetStaticAddress(oeip.Name, oeip.Name, oeip.Status.V4Ip, &oeip.Status.MacAddress, oeip.Spec.ExternalSubnet, true); err != nil {
×
499
                        klog.Errorf("failed to init ipam from ovn eip cr %s: %v", oeip.Name, err)
×
500
                }
×
501
        }
502

503
        nodes, err := c.nodesLister.List(labels.Everything())
×
504
        if err != nil {
×
505
                klog.Errorf("failed to list nodes: %v", err)
×
506
                return err
×
507
        }
×
508
        for _, node := range nodes {
×
509
                if node.Annotations[util.AllocatedAnnotation] == "true" {
×
510
                        portName := util.NodeLspName(node.Name)
×
511
                        mac := node.Annotations[util.MacAddressAnnotation]
×
512
                        v4IP, v6IP, _, err := c.ipam.GetStaticAddress(portName, portName,
×
513
                                node.Annotations[util.IPAddressAnnotation], &mac,
×
514
                                node.Annotations[util.LogicalSwitchAnnotation], true)
×
515
                        if err != nil {
×
516
                                klog.Errorf("failed to init node %s.%s address %s: %v", node.Name, node.Namespace, node.Annotations[util.IPAddressAnnotation], err)
×
517
                        }
×
518
                        if v4IP != "" && v6IP != "" {
×
519
                                node.Annotations[util.IPAddressAnnotation] = util.GetStringIP(v4IP, v6IP)
×
520
                        }
×
521
                }
522
        }
523

524
        klog.Infof("take %.2f seconds to initialize IPAM", time.Since(start).Seconds())
×
525
        return nil
×
526
}
527

528
func (c *Controller) initDefaultProviderNetwork() error {
×
529
        _, err := c.providerNetworksLister.Get(c.config.DefaultProviderName)
×
530
        if err == nil {
×
531
                return nil
×
532
        }
×
533
        if !k8serrors.IsNotFound(err) {
×
534
                klog.Errorf("failed to get default provider network %s: %v", c.config.DefaultProviderName, err)
×
535
                return err
×
536
        }
×
537

538
        nodes, err := c.nodesLister.List(labels.Everything())
×
539
        if err != nil {
×
540
                klog.Errorf("failed to get nodes: %v", err)
×
541
                return err
×
542
        }
×
543

544
        pn := kubeovnv1.ProviderNetwork{
×
545
                ObjectMeta: metav1.ObjectMeta{
×
546
                        Name: c.config.DefaultProviderName,
×
547
                },
×
548
                Spec: kubeovnv1.ProviderNetworkSpec{
×
549
                        DefaultInterface: c.config.DefaultHostInterface,
×
550
                        ExchangeLinkName: c.config.DefaultExchangeLinkName,
×
551
                },
×
552
        }
×
553

×
554
        excludeAnno := fmt.Sprintf(util.ProviderNetworkExcludeTemplate, c.config.DefaultProviderName)
×
555
        interfaceAnno := fmt.Sprintf(util.ProviderNetworkInterfaceTemplate, c.config.DefaultProviderName)
×
556
        patchNodes := make([]string, 0, len(nodes))
×
557
        for _, node := range nodes {
×
558
                if len(node.Annotations) == 0 {
×
559
                        continue
×
560
                }
561

562
                if node.Annotations[excludeAnno] == "true" {
×
563
                        pn.Spec.ExcludeNodes = append(pn.Spec.ExcludeNodes, node.Name)
×
564
                        patchNodes = append(patchNodes, node.Name)
×
565
                } else if s := node.Annotations[interfaceAnno]; s != "" {
×
566
                        var index *int
×
567
                        for i := range pn.Spec.CustomInterfaces {
×
568
                                if pn.Spec.CustomInterfaces[i].Interface == s {
×
569
                                        index = &i
×
570
                                        break
×
571
                                }
572
                        }
573
                        if index != nil {
×
574
                                pn.Spec.CustomInterfaces[*index].Nodes = append(pn.Spec.CustomInterfaces[*index].Nodes, node.Name)
×
575
                        } else {
×
576
                                ci := kubeovnv1.CustomInterface{Interface: s, Nodes: []string{node.Name}}
×
577
                                pn.Spec.CustomInterfaces = append(pn.Spec.CustomInterfaces, ci)
×
578
                        }
×
579
                        patchNodes = append(patchNodes, node.Name)
×
580
                }
581
        }
582

583
        defer func() {
×
584
                if err != nil {
×
585
                        return
×
586
                }
×
587

588
                // update nodes only when provider network has been created successfully
589
                patch := util.KVPatch{excludeAnno: nil, interfaceAnno: nil}
×
590
                for _, node := range patchNodes {
×
591
                        if err := util.PatchAnnotations(c.config.KubeClient.CoreV1().Nodes(), node, patch); err != nil {
×
592
                                klog.Errorf("failed to patch node %s: %v", node, err)
×
593
                        }
×
594
                }
595
        }()
596

597
        _, err = c.config.KubeOvnClient.KubeovnV1().ProviderNetworks().Create(context.Background(), &pn, metav1.CreateOptions{})
×
598
        if err != nil {
×
599
                klog.Errorf("failed to create provider network %s: %v", c.config.DefaultProviderName, err)
×
600
                return err
×
601
        }
×
602
        return nil
×
603
}
604

605
func (c *Controller) initDefaultVlan() error {
×
606
        if c.config.NetworkType != util.NetworkTypeVlan {
×
607
                return nil
×
608
        }
×
609

610
        if err := c.initDefaultProviderNetwork(); err != nil {
×
611
                klog.Error(err)
×
612
                return err
×
613
        }
×
614

615
        _, err := c.vlansLister.Get(c.config.DefaultVlanName)
×
616
        if err == nil {
×
617
                return nil
×
618
        }
×
619

620
        if !k8serrors.IsNotFound(err) {
×
621
                klog.Errorf("get default vlan %s failed: %v", c.config.DefaultVlanName, err)
×
622
                return err
×
623
        }
×
624

625
        if c.config.DefaultVlanID < 0 || c.config.DefaultVlanID > 4095 {
×
626
                return errors.New("the default vlan id is not between 1-4095")
×
627
        }
×
628

629
        defaultVlan := kubeovnv1.Vlan{
×
630
                ObjectMeta: metav1.ObjectMeta{Name: c.config.DefaultVlanName},
×
631
                Spec: kubeovnv1.VlanSpec{
×
632
                        ID:       c.config.DefaultVlanID,
×
633
                        Provider: c.config.DefaultProviderName,
×
634
                },
×
635
        }
×
636

×
637
        _, err = c.config.KubeOvnClient.KubeovnV1().Vlans().Create(context.Background(), &defaultVlan, metav1.CreateOptions{})
×
638
        if err != nil {
×
639
                klog.Errorf("failed to create vlan %s: %v", defaultVlan.Name, err)
×
640
                return err
×
641
        }
×
642
        return nil
×
643
}
644

645
func (c *Controller) syncIPCR() error {
×
646
        klog.Info("start to sync ips")
×
647
        ips, err := c.ipsLister.List(labels.Everything())
×
648
        if err != nil {
×
649
                if k8serrors.IsNotFound(err) {
×
650
                        return nil
×
651
                }
×
652
                klog.Error(err)
×
653
                return err
×
654
        }
655

656
        ipMap := strset.New(c.getVMLsps()...)
×
657
        for _, ip := range ips {
×
658
                if !ip.DeletionTimestamp.IsZero() {
×
659
                        klog.Infof("enqueue update for removing finalizer to delete ip %s", ip.Name)
×
660
                        c.updateIPQueue.Add(ip.Name)
×
661
                        continue
×
662
                }
663
                changed := false
×
664
                ip = ip.DeepCopy()
×
665
                if ipMap.Has(ip.Name) && ip.Spec.PodType == "" {
×
666
                        ip.Spec.PodType = util.VM
×
667
                        changed = true
×
668
                }
×
669

670
                v4IP, v6IP := util.SplitStringIP(ip.Spec.IPAddress)
×
671
                if ip.Spec.V4IPAddress == v4IP && ip.Spec.V6IPAddress == v6IP && !changed {
×
672
                        continue
×
673
                }
674

675
                ip.Spec.V4IPAddress = v4IP
×
676
                ip.Spec.V6IPAddress = v6IP
×
677
                _, err := c.config.KubeOvnClient.KubeovnV1().IPs().Update(context.Background(), ip, metav1.UpdateOptions{})
×
678
                if err != nil {
×
679
                        klog.Errorf("failed to sync crd ip %s: %v", ip.Spec.IPAddress, err)
×
680
                        return err
×
681
                }
×
682
        }
683
        return nil
×
684
}
685

686
func (c *Controller) syncSubnetCR() error {
×
687
        klog.Info("start to sync subnets")
×
688
        subnets, err := c.subnetsLister.List(labels.Everything())
×
689
        if err != nil {
×
690
                if k8serrors.IsNotFound(err) {
×
691
                        return nil
×
692
                }
×
693
                klog.Error(err)
×
694
                return err
×
695
        }
696
        for _, cachedSubnet := range subnets {
×
697
                subnet := cachedSubnet.DeepCopy()
×
698
                if !subnet.Status.IsReady() {
×
699
                        klog.Warningf("subnet %s is not ready", subnet.Name)
×
700
                        continue
×
701
                }
702
                if util.CheckProtocol(subnet.Spec.CIDRBlock) == kubeovnv1.ProtocolDual {
×
703
                        subnet, err = c.calcDualSubnetStatusIP(subnet)
×
704
                } else {
×
705
                        subnet, err = c.calcSubnetStatusIP(subnet)
×
706
                }
×
707
                if err != nil {
×
708
                        klog.Errorf("failed to calculate subnet %s used ip: %v", cachedSubnet.Name, err)
×
709
                        return err
×
710
                }
×
711

712
                // only sync subnet spec enableEcmp when subnet.Spec.EnableEcmp is false and c.config.EnableEcmp is true
713
                if subnet.Spec.GatewayType == kubeovnv1.GWCentralizedType && !subnet.Spec.EnableEcmp && subnet.Spec.EnableEcmp != c.config.EnableEcmp {
×
714
                        subnet, err = c.subnetsLister.Get(subnet.Name)
×
715
                        if err != nil {
×
716
                                klog.Errorf("failed to get subnet %s: %v", subnet.Name, err)
×
717
                                return err
×
718
                        }
×
719

720
                        subnet.Spec.EnableEcmp = c.config.EnableEcmp
×
721
                        if _, err := c.config.KubeOvnClient.KubeovnV1().Subnets().Update(context.Background(), subnet, metav1.UpdateOptions{}); err != nil {
×
722
                                klog.Errorf("failed to sync subnet spec enableEcmp with kube-ovn-controller config enableEcmp %s: %v", subnet.Name, err)
×
723
                                return err
×
724
                        }
×
725
                }
726
        }
727
        return nil
×
728
}
729

730
func (c *Controller) syncVpcNatGatewayCR() error {
×
731
        klog.Info("start to sync crd vpc nat gw")
×
732
        gws, err := c.vpcNatGatewayLister.List(labels.Everything())
×
733
        if err != nil {
×
734
                klog.Errorf("failed to list vpc nat gateway, %v", err)
×
735
                return err
×
736
        }
×
737
        if len(gws) == 0 {
×
738
                return nil
×
739
        }
×
740
        // get vpc nat gateway enable state
741
        cm, err := c.configMapsLister.ConfigMaps(c.config.PodNamespace).Get(util.VpcNatGatewayConfig)
×
742
        if err != nil && !k8serrors.IsNotFound(err) {
×
743
                klog.Errorf("failed to get config map %s, %v", util.VpcNatGatewayConfig, err)
×
744
                return err
×
745
        }
×
746
        if k8serrors.IsNotFound(err) || cm.Data["enable-vpc-nat-gw"] == "false" {
×
747
                return nil
×
748
        }
×
749
        // get vpc nat gateway image
750
        cm, err = c.configMapsLister.ConfigMaps(c.config.PodNamespace).Get(util.VpcNatConfig)
×
751
        if err != nil {
×
752
                if k8serrors.IsNotFound(err) {
×
753
                        klog.Errorf("should set config map for vpc-nat-gateway %s, %v", util.VpcNatConfig, err)
×
754
                        return err
×
755
                }
×
756
                klog.Errorf("failed to get config map %s, %v", util.VpcNatConfig, err)
×
757
                return err
×
758
        }
759

760
        if cm.Data["image"] == "" {
×
761
                err = errors.New("should set image for vpc-nat-gateway pod")
×
762
                klog.Error(err)
×
763
                return err
×
764
        }
×
765

766
        for _, gw := range gws {
×
767
                if err := c.updateCrdNatGwLabels(gw.Name, ""); err != nil {
×
768
                        klog.Errorf("failed to update nat gw %s: %v", gw.Name, err)
×
769
                        return err
×
770
                }
×
771
        }
772
        return nil
×
773
}
774

775
func (c *Controller) syncVlanCR() error {
×
776
        klog.Info("start to sync vlans")
×
777
        vlans, err := c.vlansLister.List(labels.Everything())
×
778
        if err != nil {
×
779
                if k8serrors.IsNotFound(err) {
×
780
                        return nil
×
781
                }
×
782
                klog.Error(err)
×
783
                return err
×
784
        }
785

786
        for _, vlan := range vlans {
×
787
                var needUpdate bool
×
788
                newVlan := vlan.DeepCopy()
×
789
                if newVlan.Spec.VlanID != 0 && newVlan.Spec.ID == 0 {
×
790
                        newVlan.Spec.ID = newVlan.Spec.VlanID
×
791
                        newVlan.Spec.VlanID = 0
×
792
                        needUpdate = true
×
793
                }
×
794
                if newVlan.Spec.ProviderInterfaceName != "" && newVlan.Spec.Provider == "" {
×
795
                        newVlan.Spec.Provider = newVlan.Spec.ProviderInterfaceName
×
796
                        newVlan.Spec.ProviderInterfaceName = ""
×
797
                        needUpdate = true
×
798
                }
×
799
                if needUpdate {
×
800
                        if _, err = c.config.KubeOvnClient.KubeovnV1().Vlans().Update(context.Background(), newVlan, metav1.UpdateOptions{}); err != nil {
×
801
                                klog.Errorf("failed to update spec of vlan %s: %v", newVlan.Name, err)
×
802
                                return err
×
803
                        }
×
804
                }
805
        }
806

807
        return nil
×
808
}
809

810
func (c *Controller) batchMigrateNodeRoute(nodes []*v1.Node) error {
×
811
        start := time.Now()
×
812
        addPolicies := make([]*kubeovnv1.PolicyRoute, 0)
×
813
        delPolicies := make([]*kubeovnv1.PolicyRoute, 0)
×
814
        staticRoutes := make([]*kubeovnv1.StaticRoute, 0)
×
815
        externalIDsMap := make(map[string]map[string]string)
×
816
        delAsNames := make([]string, 0)
×
817
        for _, node := range nodes {
×
818
                if node.Annotations[util.AllocatedAnnotation] != "true" {
×
819
                        continue
×
820
                }
821
                nodeName := node.Name
×
822
                nodeIPv4, nodeIPv6 := util.GetNodeInternalIP(*node)
×
823
                joinAddrV4, joinAddrV6 := util.SplitStringIP(node.Annotations[util.IPAddressAnnotation])
×
824
                if nodeIPv4 != "" && joinAddrV4 != "" {
×
825
                        buildNodeRoute(4, nodeName, joinAddrV4, nodeIPv4, &addPolicies, &delPolicies, &staticRoutes, externalIDsMap, &delAsNames)
×
826
                }
×
827
                if nodeIPv6 != "" && joinAddrV6 != "" {
×
828
                        buildNodeRoute(6, nodeName, joinAddrV6, nodeIPv6, &addPolicies, &delPolicies, &staticRoutes, externalIDsMap, &delAsNames)
×
829
                }
×
830
        }
831

832
        if err := c.batchAddPolicyRouteToVpc(c.config.ClusterRouter, addPolicies, externalIDsMap); err != nil {
×
833
                klog.Errorf("failed to batch add logical router policy for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
834
                return err
×
835
        }
×
836
        if err := c.batchDeleteStaticRouteFromVpc(c.config.ClusterRouter, staticRoutes); err != nil {
×
837
                klog.Errorf("failed to batch delete  obsolete logical router static route for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
838
                return err
×
839
        }
×
840
        if err := c.batchDeletePolicyRouteFromVpc(c.config.ClusterRouter, delPolicies); err != nil {
×
841
                klog.Errorf("failed to batch delete obsolete logical router policy for lr %s nodes %d: %v", c.config.ClusterRouter, len(nodes), err)
×
842
                return err
×
843
        }
×
844
        if err := c.OVNNbClient.BatchDeleteAddressSetByNames(delAsNames); err != nil {
×
845
                klog.Errorf("failed to batch delete obsolete address set for asNames %v nodes %d: %v", delAsNames, len(nodes), err)
×
846
                return err
×
847
        }
×
848
        klog.V(3).Infof("take to %v batch migrate node route for router: %s priority: %d add policy len: %d extrenalID len: %d del policy len: %d del address set len: %d",
×
849
                time.Since(start), c.config.ClusterRouter, util.NodeRouterPolicyPriority, len(addPolicies), len(externalIDsMap), len(delPolicies), len(delAsNames))
×
850

×
851
        return nil
×
852
}
853

854
func buildNodeRoute(af int, nodeName, nexthop, ip string, addPolicies, delPolicies *[]*kubeovnv1.PolicyRoute, staticRoutes *[]*kubeovnv1.StaticRoute, externalIDsMap map[string]map[string]string, delAsNames *[]string) {
×
855
        var (
×
856
                match       = fmt.Sprintf("ip%d.dst == %s", af, ip)
×
857
                action      = kubeovnv1.PolicyRouteActionReroute
×
858
                externalIDs = map[string]string{
×
859
                        "vendor": util.CniTypeName,
×
860
                        "node":   nodeName,
×
861
                }
×
862
        )
×
863
        *addPolicies = append(*addPolicies, &kubeovnv1.PolicyRoute{
×
864
                Priority:  util.NodeRouterPolicyPriority,
×
865
                Match:     match,
×
866
                Action:    action,
×
867
                NextHopIP: nexthop,
×
868
        })
×
869
        externalIDsMap[buildExternalIDsMapKey(match, string(action), util.NodeRouterPolicyPriority)] = externalIDs
×
870
        *staticRoutes = append(*staticRoutes, &kubeovnv1.StaticRoute{
×
871
                Policy:     kubeovnv1.PolicyDst,
×
872
                RouteTable: util.MainRouteTable,
×
873
                NextHopIP:  "",
×
874
                CIDR:       ip,
×
875
        })
×
876
        asName := nodeUnderlayAddressSetName(nodeName, af)
×
877
        obsoleteMatch := fmt.Sprintf("ip%d.dst == %s && ip%d.src != $%s", af, ip, af, asName)
×
878
        *delPolicies = append(*delPolicies, &kubeovnv1.PolicyRoute{
×
879
                Match:    obsoleteMatch,
×
880
                Priority: util.NodeRouterPolicyPriority,
×
881
        })
×
882
        *delAsNames = append(*delAsNames, asName)
×
883
}
×
884

885
func (c *Controller) syncNodeRoutes() error {
×
886
        nodes, err := c.nodesLister.List(labels.Everything())
×
887
        if err != nil {
×
888
                klog.Errorf("failed to list nodes: %v", err)
×
889
                return err
×
890
        }
×
891

892
        if err := c.batchMigrateNodeRoute(nodes); err != nil {
×
893
                klog.Errorf("failed to batch migrate node routes: %v", err)
×
894
                return err
×
895
        }
×
896

897
        if err := c.addNodeGatewayStaticRoute(); err != nil {
×
898
                klog.Errorf("failed to add static route for node gateway")
×
899
                return err
×
900
        }
×
901
        return nil
×
902
}
903

904
func (c *Controller) initNodeChassis() error {
×
905
        nodes, err := c.nodesLister.List(labels.Everything())
×
906
        if err != nil {
×
907
                klog.Errorf("failed to list nodes: %v", err)
×
908
                return err
×
909
        }
×
910
        chassises, err := c.OVNSbClient.GetKubeOvnChassisses()
×
911
        if err != nil {
×
912
                klog.Errorf("failed to get chassis nodes: %v", err)
×
913
                return err
×
914
        }
×
915
        chassisNodes := make(map[string]string, len(*chassises))
×
916
        for _, chassis := range *chassises {
×
917
                chassisNodes[chassis.Name] = chassis.Hostname
×
918
        }
×
919
        for _, node := range nodes {
×
920
                if err := c.UpdateChassisTag(node); err != nil {
×
921
                        klog.Error(err)
×
922
                        if _, ok := err.(*ErrChassisNotFound); !ok {
×
923
                                return err
×
924
                        }
×
925
                }
926
        }
927
        return nil
×
928
}
929

930
func migrateFinalizers(c client.Client, list client.ObjectList, getObjectItem func(int) (client.Object, client.Object)) error {
×
931
        if err := c.List(context.Background(), list); err != nil {
×
932
                klog.Errorf("failed to list objects: %v", err)
×
933
                return err
×
934
        }
×
935

936
        var i int
×
937
        var cachedObj, patchedObj client.Object
×
938
        for {
×
939
                if cachedObj, patchedObj = getObjectItem(i); cachedObj == nil {
×
940
                        break
×
941
                }
942
                if !controllerutil.ContainsFinalizer(cachedObj, util.DepreciatedFinalizerName) {
×
943
                        i++
×
944
                        continue
×
945
                }
946
                controllerutil.RemoveFinalizer(patchedObj, util.DepreciatedFinalizerName)
×
947
                if cachedObj.GetDeletionTimestamp() == nil {
×
948
                        // if the object is not being deleted, add the new finalizer
×
949
                        controllerutil.AddFinalizer(patchedObj, util.KubeOVNControllerFinalizer)
×
950
                }
×
951
                if err := c.Patch(context.Background(), patchedObj, client.MergeFrom(cachedObj)); client.IgnoreNotFound(err) != nil {
×
952
                        klog.Errorf("failed to sync finalizers for %s %s: %v",
×
953
                                patchedObj.GetObjectKind().GroupVersionKind().Kind,
×
954
                                cache.MetaObjectToName(patchedObj), err)
×
955
                        return err
×
956
                }
×
957
                i++
×
958
        }
959

960
        return nil
×
961
}
962

963
func (c *Controller) syncFinalizers() error {
×
964
        cl, err := client.New(config.GetConfigOrDie(), client.Options{})
×
965
        if err != nil {
×
966
                klog.Errorf("failed to create client: %v", err)
×
967
                return err
×
968
        }
×
969

970
        // migrate depreciated finalizer to new finalizer
971
        klog.Info("start to sync finalizers")
×
972
        if err := c.syncIPFinalizer(cl); err != nil {
×
973
                klog.Errorf("failed to sync ip finalizer: %v", err)
×
974
                return err
×
975
        }
×
976
        if err := c.syncOvnDnatFinalizer(cl); err != nil {
×
977
                klog.Errorf("failed to sync ovn dnat finalizer: %v", err)
×
978
                return err
×
979
        }
×
980
        if err := c.syncOvnEipFinalizer(cl); err != nil {
×
981
                klog.Errorf("failed to sync ovn eip finalizer: %v", err)
×
982
                return err
×
983
        }
×
984
        if err := c.syncOvnFipFinalizer(cl); err != nil {
×
985
                klog.Errorf("failed to sync ovn fip finalizer: %v", err)
×
986
                return err
×
987
        }
×
988
        if err := c.syncOvnSnatFinalizer(cl); err != nil {
×
989
                klog.Errorf("failed to sync ovn snat finalizer: %v", err)
×
990
                return err
×
991
        }
×
992
        if err := c.syncQoSPolicyFinalizer(cl); err != nil {
×
993
                klog.Errorf("failed to sync qos policy finalizer: %v", err)
×
994
                return err
×
995
        }
×
996
        if err := c.syncSubnetFinalizer(cl); err != nil {
×
997
                klog.Errorf("failed to sync subnet finalizer: %v", err)
×
998
                return err
×
999
        }
×
1000
        if err := c.syncVipFinalizer(cl); err != nil {
×
1001
                klog.Errorf("failed to sync vip finalizer: %v", err)
×
1002
                return err
×
1003
        }
×
1004
        if err := c.syncIptablesEipFinalizer(cl); err != nil {
×
1005
                klog.Errorf("failed to sync iptables eip finalizer: %v", err)
×
1006
                return err
×
1007
        }
×
1008
        if err := c.syncIptablesFipFinalizer(cl); err != nil {
×
1009
                klog.Errorf("failed to sync iptables fip finalizer: %v", err)
×
1010
                return err
×
1011
        }
×
1012
        if err := c.syncIptablesDnatFinalizer(cl); err != nil {
×
1013
                klog.Errorf("failed to sync iptables dnat finalizer: %v", err)
×
1014
                return err
×
1015
        }
×
1016
        if err := c.syncIptablesSnatFinalizer(cl); err != nil {
×
1017
                klog.Errorf("failed to sync iptables snat finalizer: %v", err)
×
1018
                return err
×
1019
        }
×
1020
        klog.Info("sync finalizers done")
×
1021
        return nil
×
1022
}
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc