]>
Commit | Line | Data |
---|---|---|
f5eabba0 | 1 | package PVE::Network::SDN::Zones::QinQPlugin; |
20e19696 AD |
2 | |
3 | use strict; | |
4 | use warnings; | |
3dfdc684 | 5 | use PVE::Network::SDN::Zones::Plugin; |
1d44ce70 | 6 | use PVE::Exception qw(raise raise_param_exc); |
20e19696 | 7 | |
3dfdc684 | 8 | use base('PVE::Network::SDN::Zones::Plugin'); |
20e19696 AD |
9 | |
10 | sub type { | |
11 | return 'qinq'; | |
12 | } | |
13 | ||
20e19696 AD |
14 | sub properties { |
15 | return { | |
1c95991c TL |
16 | tag => { |
17 | type => 'integer', | |
18 | minimum => 0, | |
19 | description => "Service-VLAN Tag", | |
20 | }, | |
823f2e2a AD |
21 | mtu => { |
22 | type => 'integer', | |
1c95991c | 23 | description => "MTU", |
823f2e2a AD |
24 | optional => 1, |
25 | }, | |
3dfdc684 AD |
26 | 'vlan-protocol' => { |
27 | type => 'string', | |
28 | enum => ['802.1q', '802.1ad'], | |
29 | default => '802.1q', | |
30 | optional => 1, | |
31 | } | |
20e19696 AD |
32 | }; |
33 | } | |
34 | ||
35 | sub options { | |
36 | ||
37 | return { | |
c2b9c173 | 38 | nodes => { optional => 1}, |
20e19696 | 39 | 'tag' => { optional => 0 }, |
938ebef7 | 40 | 'bridge' => { optional => 0 }, |
823f2e2a | 41 | 'mtu' => { optional => 1 }, |
3dfdc684 | 42 | 'vlan-protocol' => { optional => 1 }, |
4ad78442 AD |
43 | dns => { optional => 1 }, |
44 | reversedns => { optional => 1 }, | |
45 | dnszone => { optional => 1 }, | |
20e19696 AD |
46 | }; |
47 | } | |
48 | ||
49 | # Plugin implementation | |
50 | sub generate_sdn_config { | |
7024ec2b | 51 | my ($class, $plugin_config, $zoneid, $vnetid, $vnet, $controller, $subnet_cfg, $interfaces_config, $config) = @_; |
20e19696 | 52 | |
3dfdc684 | 53 | my $stag = $plugin_config->{tag}; |
938ebef7 AD |
54 | my $mtu = $plugin_config->{mtu}; |
55 | my $bridge = $plugin_config->{'bridge'}; | |
3dfdc684 AD |
56 | my $vlanprotocol = $plugin_config->{'vlan-protocol'}; |
57 | my $ctag = $vnet->{tag}; | |
58 | my $alias = $vnet->{alias}; | |
ae3f4de8 | 59 | die "can't find bridge $bridge" if !-d "/sys/class/net/$bridge"; |
20e19696 | 60 | |
3dfdc684 | 61 | my $vlan_aware = PVE::Tools::file_read_firstline("/sys/class/net/$bridge/bridge/vlan_filtering"); |
c559eac1 | 62 | my $is_ovs = !-d "/sys/class/net/$bridge/brif"; |
20e19696 | 63 | |
3dfdc684 AD |
64 | my @iface_config = (); |
65 | my $vnet_bridge_ports = ""; | |
66 | ||
67 | if($is_ovs) { | |
68 | ||
69 | #ovs--->ovsintport(dot1q-tunnel tag)------->vlanawarebrige-----(tag)--->vnet | |
70 | ||
71 | $vlanprotocol = "802.1q" if !$vlanprotocol; | |
72 | my $svlan_iface = "sv_".$zoneid; | |
73 | my $zone = "z_$zoneid"; | |
74 | ||
75 | #ovs dot1q-tunnel port | |
76 | @iface_config = (); | |
77 | push @iface_config, "ovs_type OVSIntPort"; | |
78 | push @iface_config, "ovs_bridge $bridge"; | |
82159388 | 79 | push @iface_config, "ovs_mtu $mtu" if $mtu; |
3dfdc684 AD |
80 | push @iface_config, "ovs_options vlan_mode=dot1q-tunnel tag=$stag other_config:qinq-ethtype=$vlanprotocol"; |
81 | push(@{$config->{$svlan_iface}}, @iface_config) if !$config->{$svlan_iface}; | |
82 | ||
880f6d61 AD |
83 | #redefine main ovs bridge, ifupdown2 will merge ovs_ports |
84 | @iface_config = (); | |
85 | push @iface_config, "ovs_ports $svlan_iface"; | |
0f700635 | 86 | push(@{$config->{$bridge}}, @iface_config); |
3dfdc684 AD |
87 | |
88 | #zone vlan aware bridge | |
89 | @iface_config = (); | |
938ebef7 AD |
90 | push @iface_config, "mtu $mtu" if $mtu; |
91 | push @iface_config, "bridge-stp off"; | |
3dfdc684 | 92 | push @iface_config, "bridge-ports $svlan_iface"; |
938ebef7 AD |
93 | push @iface_config, "bridge-fd 0"; |
94 | push @iface_config, "bridge-vlan-aware yes"; | |
95 | push @iface_config, "bridge-vids 2-4094"; | |
3dfdc684 AD |
96 | push(@{$config->{$zone}}, @iface_config) if !$config->{$zone}; |
97 | ||
98 | $vnet_bridge_ports = "$zone.$ctag"; | |
99 | ||
100 | } elsif ($vlan_aware) { | |
101 | ||
102 | #vlanawarebrige-(tag)----->vlanwarebridge-(tag)----->vnet | |
938ebef7 | 103 | |
3dfdc684 AD |
104 | my $zone = "z_$zoneid"; |
105 | ||
106 | if($vlanprotocol) { | |
107 | @iface_config = (); | |
108 | push @iface_config, "bridge-vlan-protocol $vlanprotocol"; | |
109 | push(@{$config->{$bridge}}, @iface_config) if !$config->{$bridge}; | |
110 | } | |
111 | ||
112 | #zone vlan bridge | |
938ebef7 | 113 | @iface_config = (); |
3dfdc684 AD |
114 | push @iface_config, "mtu $mtu" if $mtu; |
115 | push @iface_config, "bridge-stp off"; | |
116 | push @iface_config, "bridge-ports $bridge.$stag"; | |
117 | push @iface_config, "bridge-fd 0"; | |
118 | push @iface_config, "bridge-vlan-aware yes"; | |
119 | push @iface_config, "bridge-vids 2-4094"; | |
120 | push(@{$config->{$zone}}, @iface_config) if !$config->{$zone}; | |
121 | ||
122 | $vnet_bridge_ports = "$zone.$ctag"; | |
123 | ||
124 | } else { | |
125 | ||
126 | #eth--->eth.x(svlan)--->eth.x.y(cvlan)---->vnet | |
127 | ||
128 | my @bridge_ifaces = (); | |
129 | my $dir = "/sys/class/net/$bridge/brif"; | |
130 | PVE::Tools::dir_glob_foreach($dir, '(((eth|bond)\d+|en[^.]+)(\.\d+)?)', sub { | |
131 | push @bridge_ifaces, $_[0]; | |
132 | }); | |
133 | ||
134 | foreach my $bridge_iface (@bridge_ifaces) { | |
135 | ||
136 | # use named vlan interface to avoid too long names | |
137 | my $svlan_iface = "sv_$vnetid"; | |
138 | my $cvlan_iface = "cv_$vnetid"; | |
139 | ||
140 | #svlan | |
141 | @iface_config = (); | |
142 | push @iface_config, "vlan-raw-device $bridge_iface"; | |
143 | push @iface_config, "vlan-id $stag"; | |
144 | push @iface_config, "vlan-protocol $vlanprotocol" if $vlanprotocol; | |
145 | push(@{$config->{$svlan_iface}}, @iface_config) if !$config->{$svlan_iface}; | |
146 | ||
147 | #cvlan | |
148 | @iface_config = (); | |
149 | push @iface_config, "vlan-raw-device $svlan_iface"; | |
150 | push @iface_config, "vlan-id $ctag"; | |
151 | push(@{$config->{$cvlan_iface}}, @iface_config) if !$config->{$cvlan_iface}; | |
152 | ||
153 | $vnet_bridge_ports .= " $cvlan_iface"; | |
154 | } | |
155 | } | |
156 | ||
157 | #vnet bridge | |
158 | @iface_config = (); | |
159 | push @iface_config, "bridge_ports $vnet_bridge_ports"; | |
160 | push @iface_config, "bridge_stp off"; | |
161 | push @iface_config, "bridge_fd 0"; | |
912fb443 AD |
162 | if($vnet->{vlanaware}) { |
163 | push @iface_config, "bridge-vlan-aware yes"; | |
164 | push @iface_config, "bridge-vids 2-4094"; | |
165 | } | |
3dfdc684 AD |
166 | push @iface_config, "mtu $mtu" if $mtu; |
167 | push @iface_config, "alias $alias" if $alias; | |
168 | push(@{$config->{$vnetid}}, @iface_config) if !$config->{$vnetid}; | |
169 | ||
20e19696 AD |
170 | } |
171 | ||
58433186 | 172 | sub status { |
4d7cc94f | 173 | my ($class, $plugin_config, $zone, $vnetid, $vnet, $status) = @_; |
58433186 AD |
174 | |
175 | my $bridge = $plugin_config->{bridge}; | |
4d7cc94f AD |
176 | my $err_msg = []; |
177 | ||
178 | if (!-d "/sys/class/net/$bridge") { | |
179 | push @$err_msg, "missing $bridge"; | |
180 | return $err_msg; | |
181 | } | |
182 | ||
183 | my $vlan_aware = PVE::Tools::file_read_firstline("/sys/class/net/$bridge/bridge/vlan_filtering"); | |
c559eac1 | 184 | my $is_ovs = !-d "/sys/class/net/$bridge/brif"; |
4d7cc94f AD |
185 | |
186 | my $tag = $vnet->{tag}; | |
187 | my $vnet_uplink = "ln_".$vnetid; | |
188 | my $vnet_uplinkpeer = "pr_".$vnetid; | |
189 | ||
190 | # ifaces to check | |
191 | my $ifaces = [ $vnetid, $bridge ]; | |
192 | if($is_ovs) { | |
193 | my $svlan_iface = "sv_".$zone; | |
194 | my $zonebridge = "z_$zone"; | |
195 | push @$ifaces, $svlan_iface; | |
196 | push @$ifaces, $zonebridge; | |
197 | } elsif ($vlan_aware) { | |
198 | my $zonebridge = "z_$zone"; | |
199 | push @$ifaces, $zonebridge; | |
58433186 | 200 | } else { |
4d7cc94f AD |
201 | my $svlan_iface = "sv_$vnetid"; |
202 | my $cvlan_iface = "cv_$vnetid"; | |
203 | push @$ifaces, $svlan_iface; | |
204 | push @$ifaces, $cvlan_iface; | |
205 | } | |
206 | ||
207 | foreach my $iface (@{$ifaces}) { | |
208 | if (!$status->{$iface}->{status}) { | |
209 | push @$err_msg, "missing $iface"; | |
210 | } elsif ($status->{$iface}->{status} ne 'pass') { | |
211 | push @$err_msg, "error $iface"; | |
212 | } | |
58433186 | 213 | } |
4d7cc94f | 214 | return $err_msg; |
58433186 AD |
215 | } |
216 | ||
5ca07ed9 AD |
217 | sub vnet_update_hook { |
218 | my ($class, $vnet) = @_; | |
1d44ce70 | 219 | |
5ca07ed9 AD |
220 | raise_param_exc({ tag => "missing vlan tag"}) if !defined($vnet->{tag}); |
221 | raise_param_exc({ tag => "vlan tag max value is 4096"}) if $vnet->{tag} > 4096; | |
1d44ce70 AD |
222 | } |
223 | ||
20e19696 AD |
224 | 1; |
225 | ||
226 |