blob: 5be8b8732de2634cef4a92d68bb2a5639b45f0a8 [file] [log] [blame]
Hyunsun Moon44aac662017-02-18 02:07:01 +09001/*
Brian O'Connora09fe5b2017-08-03 21:12:30 -07002 * Copyright 2016-present Open Networking Foundation
Hyunsun Moon44aac662017-02-18 02:07:01 +09003 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16package org.onosproject.openstacknetworking.impl;
17
18import com.google.common.base.Strings;
Jian Li1064e4f2018-05-29 16:16:53 +090019import com.google.common.collect.ImmutableSet;
Jian Li99892e92018-04-13 14:59:39 +090020import com.google.common.collect.Maps;
Jian Li1064e4f2018-05-29 16:16:53 +090021import com.google.common.collect.Sets;
Hyunsun Moon44aac662017-02-18 02:07:01 +090022import org.apache.felix.scr.annotations.Activate;
23import org.apache.felix.scr.annotations.Component;
24import org.apache.felix.scr.annotations.Deactivate;
25import org.apache.felix.scr.annotations.Reference;
26import org.apache.felix.scr.annotations.ReferenceCardinality;
27import org.onlab.packet.Ethernet;
28import org.onlab.packet.IpAddress;
29import org.onlab.packet.MacAddress;
daniel parkee8700b2017-05-11 15:50:03 +090030import org.onlab.packet.VlanId;
Hyunsun Moon44aac662017-02-18 02:07:01 +090031import org.onosproject.cluster.ClusterService;
32import org.onosproject.cluster.LeadershipService;
33import org.onosproject.cluster.NodeId;
34import org.onosproject.core.ApplicationId;
35import org.onosproject.core.CoreService;
Jian Li24ec59f2018-05-23 19:01:25 +090036import org.onosproject.net.DeviceId;
Hyunsun Moon44aac662017-02-18 02:07:01 +090037import org.onosproject.net.PortNumber;
38import org.onosproject.net.device.DeviceService;
39import org.onosproject.net.flow.DefaultTrafficSelector;
40import org.onosproject.net.flow.DefaultTrafficTreatment;
41import org.onosproject.net.flow.TrafficSelector;
42import org.onosproject.net.flow.TrafficTreatment;
Hyunsun Moon44aac662017-02-18 02:07:01 +090043import org.onosproject.openstacknetworking.api.Constants;
daniel park32b42202018-03-14 16:53:44 +090044import org.onosproject.openstacknetworking.api.ExternalPeerRouter;
Hyunsun Moon44aac662017-02-18 02:07:01 +090045import org.onosproject.openstacknetworking.api.InstancePort;
Jian Liec5c32b2018-07-13 14:28:58 +090046import org.onosproject.openstacknetworking.api.InstancePortAdminService;
Jian Li24ec59f2018-05-23 19:01:25 +090047import org.onosproject.openstacknetworking.api.InstancePortEvent;
48import org.onosproject.openstacknetworking.api.InstancePortListener;
sanghodc375372017-06-08 10:41:30 +090049import org.onosproject.openstacknetworking.api.OpenstackFlowRuleService;
Jian Lie1a39032018-06-19 21:49:36 +090050import org.onosproject.openstacknetworking.api.OpenstackNetworkEvent;
51import org.onosproject.openstacknetworking.api.OpenstackNetworkListener;
sanghodc375372017-06-08 10:41:30 +090052import org.onosproject.openstacknetworking.api.OpenstackNetworkService;
Jian Lif3a28b02018-06-11 21:29:13 +090053import org.onosproject.openstacknetworking.api.OpenstackRouterAdminService;
Hyunsun Moon44aac662017-02-18 02:07:01 +090054import org.onosproject.openstacknetworking.api.OpenstackRouterEvent;
55import org.onosproject.openstacknetworking.api.OpenstackRouterListener;
Hyunsun Moon0d457362017-06-27 17:19:41 +090056import org.onosproject.openstacknode.api.OpenstackNode;
57import org.onosproject.openstacknode.api.OpenstackNodeEvent;
58import org.onosproject.openstacknode.api.OpenstackNodeListener;
59import org.onosproject.openstacknode.api.OpenstackNodeService;
daniel parkeeb8e042018-02-21 14:06:58 +090060import org.openstack4j.model.network.ExternalGateway;
Hyunsun Moon44aac662017-02-18 02:07:01 +090061import org.openstack4j.model.network.NetFloatingIP;
62import org.openstack4j.model.network.Network;
daniel parkee8700b2017-05-11 15:50:03 +090063import org.openstack4j.model.network.NetworkType;
Hyunsun Moon44aac662017-02-18 02:07:01 +090064import org.openstack4j.model.network.Port;
daniel parkeeb8e042018-02-21 14:06:58 +090065import org.openstack4j.model.network.Router;
66import org.openstack4j.model.network.RouterInterface;
67import org.openstack4j.model.network.Subnet;
Jian Lif3a28b02018-06-11 21:29:13 +090068import org.openstack4j.openstack.networking.domain.NeutronFloatingIP;
Hyunsun Moon44aac662017-02-18 02:07:01 +090069import org.slf4j.Logger;
70import org.slf4j.LoggerFactory;
71
Jian Li99892e92018-04-13 14:59:39 +090072import java.util.Map;
Hyunsun Moon44aac662017-02-18 02:07:01 +090073import java.util.Objects;
Jian Li99892e92018-04-13 14:59:39 +090074import java.util.Set;
Hyunsun Moon44aac662017-02-18 02:07:01 +090075import java.util.concurrent.ExecutorService;
76
77import static java.util.concurrent.Executors.newSingleThreadExecutor;
78import static org.onlab.util.Tools.groupedThreads;
sanghodc375372017-06-08 10:41:30 +090079import static org.onosproject.openstacknetworking.api.Constants.GW_COMMON_TABLE;
80import static org.onosproject.openstacknetworking.api.Constants.OPENSTACK_NETWORKING_APP_ID;
daniel parkeeb8e042018-02-21 14:06:58 +090081import static org.onosproject.openstacknetworking.api.Constants.PRIORITY_EXTERNAL_FLOATING_ROUTING_RULE;
sanghodc375372017-06-08 10:41:30 +090082import static org.onosproject.openstacknetworking.api.Constants.PRIORITY_FLOATING_EXTERNAL;
83import static org.onosproject.openstacknetworking.api.Constants.PRIORITY_FLOATING_INTERNAL;
daniel parkeeb8e042018-02-21 14:06:58 +090084import static org.onosproject.openstacknetworking.api.Constants.ROUTING_TABLE;
Jian Liec5c32b2018-07-13 14:28:58 +090085import static org.onosproject.openstacknetworking.api.InstancePort.State.PENDING_REMOVAL;
86import static org.onosproject.openstacknetworking.api.InstancePort.State.REMOVED;
Jian Lie1a39032018-06-19 21:49:36 +090087import static org.onosproject.openstacknetworking.api.InstancePortEvent.Type.OPENSTACK_INSTANCE_MIGRATION_ENDED;
88import static org.onosproject.openstacknetworking.api.InstancePortEvent.Type.OPENSTACK_INSTANCE_MIGRATION_STARTED;
Jian Li24ec59f2018-05-23 19:01:25 +090089import static org.onosproject.openstacknetworking.util.OpenstackNetworkingUtil.associatedFloatingIp;
Jian Li1064e4f2018-05-29 16:16:53 +090090import static org.onosproject.openstacknetworking.util.OpenstackNetworkingUtil.getGwByComputeDevId;
Jian Li24ec59f2018-05-23 19:01:25 +090091import static org.onosproject.openstacknetworking.util.OpenstackNetworkingUtil.isAssociatedWithVM;
Jian Liec5c32b2018-07-13 14:28:58 +090092import static org.onosproject.openstacknetworking.util.OpenstackNetworkingUtil.swapStaleLocation;
Jian Li26949762018-03-30 15:46:37 +090093import static org.onosproject.openstacknetworking.util.RulePopulatorUtil.buildExtension;
Hyunsun Moon0d457362017-06-27 17:19:41 +090094import static org.onosproject.openstacknode.api.OpenstackNode.NodeType.GATEWAY;
Hyunsun Moon44aac662017-02-18 02:07:01 +090095
96/**
97 * Handles OpenStack floating IP events.
98 */
99@Component(immediate = true)
100public class OpenstackRoutingFloatingIpHandler {
101
102 private final Logger log = LoggerFactory.getLogger(getClass());
103
104 private static final String ERR_FLOW = "Failed set flows for floating IP %s: ";
Ray Milkeyc6c9b172018-02-26 09:36:31 -0800105 private static final String ERR_UNSUPPORTED_NET_TYPE = "Unsupported network type %s";
Hyunsun Moon44aac662017-02-18 02:07:01 +0900106
107 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
108 protected CoreService coreService;
109
110 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
111 protected DeviceService deviceService;
112
113 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
Hyunsun Moon44aac662017-02-18 02:07:01 +0900114 protected LeadershipService leadershipService;
115
116 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
117 protected ClusterService clusterService;
118
119 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
120 protected OpenstackNodeService osNodeService;
121
122 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
Jian Liec5c32b2018-07-13 14:28:58 +0900123 protected InstancePortAdminService instancePortService;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900124
125 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
Jian Lif3a28b02018-06-11 21:29:13 +0900126 protected OpenstackRouterAdminService osRouterAdminService;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900127
128 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
129 protected OpenstackNetworkService osNetworkService;
130
sanghodc375372017-06-08 10:41:30 +0900131 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
132 protected OpenstackFlowRuleService osFlowRuleService;
133
Hyunsun Moon44aac662017-02-18 02:07:01 +0900134 private final ExecutorService eventExecutor = newSingleThreadExecutor(
135 groupedThreads(this.getClass().getSimpleName(), "event-handler", log));
Jian Li24ec59f2018-05-23 19:01:25 +0900136 private final OpenstackRouterListener floatingIpListener = new InternalFloatingIpListener();
137 private final InstancePortListener instancePortListener = new InternalInstancePortListener();
Hyunsun Moon44aac662017-02-18 02:07:01 +0900138 private final OpenstackNodeListener osNodeListener = new InternalNodeListener();
Jian Lie1a39032018-06-19 21:49:36 +0900139 private final OpenstackNetworkListener osNetworkListener = new InternalOpenstackNetworkListener();
140 private final InstancePortListener instPortListener = new InternalInstancePortListener();
141
142 private Map<String, Port> terminatedOsPorts = Maps.newConcurrentMap();
Jian Lie1a39032018-06-19 21:49:36 +0900143 private Map<String, NetFloatingIP> pendingInstPortIds = Maps.newConcurrentMap();
Hyunsun Moon44aac662017-02-18 02:07:01 +0900144
145 private ApplicationId appId;
146 private NodeId localNodeId;
147
148 @Activate
149 protected void activate() {
150 appId = coreService.registerApplication(OPENSTACK_NETWORKING_APP_ID);
151 localNodeId = clusterService.getLocalNode().id();
152 leadershipService.runForLeadership(appId.name());
Jian Li24ec59f2018-05-23 19:01:25 +0900153 osRouterAdminService.addListener(floatingIpListener);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900154 osNodeService.addListener(osNodeListener);
Jian Li24ec59f2018-05-23 19:01:25 +0900155 instancePortService.addListener(instancePortListener);
Jian Lie1a39032018-06-19 21:49:36 +0900156 osNodeService.addListener(osNodeListener);
157 osNetworkService.addListener(osNetworkListener);
158 instancePortService.addListener(instPortListener);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900159
160 log.info("Started");
161 }
162
163 @Deactivate
164 protected void deactivate() {
Jian Li24ec59f2018-05-23 19:01:25 +0900165 instancePortService.removeListener(instancePortListener);
Jian Lie1a39032018-06-19 21:49:36 +0900166 instancePortService.removeListener(instPortListener);
167 osNetworkService.removeListener(osNetworkListener);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900168 osNodeService.removeListener(osNodeListener);
Jian Li24ec59f2018-05-23 19:01:25 +0900169 osRouterAdminService.removeListener(floatingIpListener);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900170 leadershipService.withdraw(appId.name());
171 eventExecutor.shutdown();
172
173 log.info("Stopped");
174 }
175
Hyunsun Moon44aac662017-02-18 02:07:01 +0900176 private void setFloatingIpRules(NetFloatingIP floatingIp, Port osPort,
Jian Li1064e4f2018-05-29 16:16:53 +0900177 OpenstackNode gateway, boolean install) {
Hyunsun Moon44aac662017-02-18 02:07:01 +0900178 Network osNet = osNetworkService.network(osPort.getNetworkId());
179 if (osNet == null) {
Jian Li71670d12018-03-02 21:31:07 +0900180 final String errorFormat = ERR_FLOW + "no network(%s) exists";
181 final String error = String.format(errorFormat,
Hyunsun Moon44aac662017-02-18 02:07:01 +0900182 floatingIp.getFloatingIpAddress(),
183 osPort.getNetworkId());
184 throw new IllegalStateException(error);
185 }
186
187 MacAddress srcMac = MacAddress.valueOf(osPort.getMacAddress());
daniel parkc2a2ed62018-04-10 15:17:42 +0900188 log.trace("Mac address of openstack port: {}", srcMac);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900189 InstancePort instPort = instancePortService.instancePort(srcMac);
Jian Li99892e92018-04-13 14:59:39 +0900190
Jian Li99892e92018-04-13 14:59:39 +0900191 if (instPort == null) {
Jian Li71670d12018-03-02 21:31:07 +0900192 final String errorFormat = ERR_FLOW + "no host(MAC:%s) found";
193 final String error = String.format(errorFormat,
Hyunsun Moon44aac662017-02-18 02:07:01 +0900194 floatingIp.getFloatingIpAddress(), srcMac);
195 throw new IllegalStateException(error);
196 }
197
Jian Liec5c32b2018-07-13 14:28:58 +0900198 if (instPort.state() == PENDING_REMOVAL) {
199 instancePortService.updateInstancePort(instPort.updateState(REMOVED));
200 }
201
daniel park32b42202018-03-14 16:53:44 +0900202 ExternalPeerRouter externalPeerRouter = externalPeerRouter(osNet);
203 if (externalPeerRouter == null) {
daniel parkc2a2ed62018-04-10 15:17:42 +0900204 final String errorFormat = ERR_FLOW + "no external peer router found";
205 throw new IllegalStateException(errorFormat);
daniel park32b42202018-03-14 16:53:44 +0900206 }
207
Jian Lide679782018-06-05 01:41:29 +0900208 updateComputeNodeRules(instPort, osNet, gateway, install);
209 updateGatewayNodeRules(floatingIp, instPort, osNet, externalPeerRouter, gateway, install);
210
211 // FIXME: downstream internal rules are still duplicated in all gateway nodes
212 // need to make the internal rules de-duplicated sooner or later
213 setDownstreamInternalRules(floatingIp, osNet, instPort, install);
214
215 // TODO: need to refactor setUpstreamRules if possible
daniel park32b42202018-03-14 16:53:44 +0900216 setUpstreamRules(floatingIp, osNet, instPort, externalPeerRouter, install);
daniel parkc2a2ed62018-04-10 15:17:42 +0900217 log.trace("Succeeded to set flow rules for floating ip {}:{} and install: {}",
218 floatingIp.getFloatingIpAddress(),
219 floatingIp.getFixedIpAddress(),
220 install);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900221 }
222
Jian Lide679782018-06-05 01:41:29 +0900223 private synchronized void updateGatewayNodeRules(NetFloatingIP fip,
224 InstancePort instPort,
225 Network osNet,
226 ExternalPeerRouter router,
227 OpenstackNode gateway,
228 boolean install) {
229
230 Set<OpenstackNode> completedGws = osNodeService.completeNodes(GATEWAY);
231 Set<OpenstackNode> finalGws = Sets.newConcurrentHashSet();
232 finalGws.addAll(ImmutableSet.copyOf(completedGws));
233
Jian Lia171a432018-06-11 11:52:11 +0900234
235 if (gateway == null) {
236 // these are floating IP related cases...
237 setDownstreamExternalRulesHelper(fip, osNet, instPort, router,
238 ImmutableSet.copyOf(finalGws), install);
239
Jian Lide679782018-06-05 01:41:29 +0900240 } else {
Jian Lia171a432018-06-11 11:52:11 +0900241 // these are openstack node related cases...
242 if (install) {
243 if (completedGws.contains(gateway)) {
244 if (completedGws.size() > 1) {
245 finalGws.remove(gateway);
246 if (fip.getPortId() != null) {
247 setDownstreamExternalRulesHelper(fip, osNet, instPort, router,
248 ImmutableSet.copyOf(finalGws), false);
249 finalGws.add(gateway);
250 }
251 }
Jian Lide679782018-06-05 01:41:29 +0900252 if (fip.getPortId() != null) {
253 setDownstreamExternalRulesHelper(fip, osNet, instPort, router,
254 ImmutableSet.copyOf(finalGws), true);
255 }
Jian Lia171a432018-06-11 11:52:11 +0900256 } else {
257 log.warn("Detected node should be included in completed gateway set");
Jian Lide679782018-06-05 01:41:29 +0900258 }
259 } else {
Jian Lia171a432018-06-11 11:52:11 +0900260 if (!completedGws.contains(gateway)) {
261 if (completedGws.size() >= 1) {
262 if (fip.getPortId() != null) {
263 setDownstreamExternalRulesHelper(fip, osNet, instPort, router,
264 ImmutableSet.copyOf(finalGws), true);
265 }
266 }
267 } else {
268 log.warn("Detected node should NOT be included in completed gateway set");
269 }
Jian Lide679782018-06-05 01:41:29 +0900270 }
271 }
272 }
273
274 private synchronized void updateComputeNodeRules(InstancePort instPort,
275 Network osNet,
276 OpenstackNode gateway,
277 boolean install) {
Jian Li1064e4f2018-05-29 16:16:53 +0900278
279 Set<OpenstackNode> completedGws = osNodeService.completeNodes(GATEWAY);
280 Set<OpenstackNode> finalGws = Sets.newConcurrentHashSet();
281 finalGws.addAll(ImmutableSet.copyOf(completedGws));
282
283 if (gateway == null) {
284 // these are floating IP related cases...
285 setComputeNodeToGatewayHelper(instPort, osNet,
286 ImmutableSet.copyOf(finalGws), install);
Jian Lide679782018-06-05 01:41:29 +0900287
Jian Li1064e4f2018-05-29 16:16:53 +0900288 } else {
289 // these are openstack node related cases...
290 if (install) {
291 if (completedGws.contains(gateway)) {
292 if (completedGws.size() > 1) {
293 finalGws.remove(gateway);
294 setComputeNodeToGatewayHelper(instPort, osNet,
295 ImmutableSet.copyOf(finalGws), false);
296 finalGws.add(gateway);
297 }
298
299 setComputeNodeToGatewayHelper(instPort, osNet,
300 ImmutableSet.copyOf(finalGws), true);
301 } else {
302 log.warn("Detected node should be included in completed gateway set");
303 }
304 } else {
305 if (!completedGws.contains(gateway)) {
306 finalGws.add(gateway);
307 setComputeNodeToGatewayHelper(instPort, osNet,
308 ImmutableSet.copyOf(finalGws), false);
309 finalGws.remove(gateway);
310 if (completedGws.size() >= 1) {
311 setComputeNodeToGatewayHelper(instPort, osNet,
312 ImmutableSet.copyOf(finalGws), true);
313 }
314 } else {
315 log.warn("Detected node should NOT be included in completed gateway set");
316 }
317 }
318 }
319 }
320
321 // a helper method
322 private void setComputeNodeToGatewayHelper(InstancePort instPort,
323 Network osNet,
324 Set<OpenstackNode> gateways,
325 boolean install) {
daniel parkeeb8e042018-02-21 14:06:58 +0900326 TrafficTreatment treatment;
327
328 TrafficSelector.Builder sBuilder = DefaultTrafficSelector.builder()
329 .matchEthType(Ethernet.TYPE_IPV4)
330 .matchIPSrc(instPort.ipAddress().toIpPrefix())
331 .matchEthDst(Constants.DEFAULT_GATEWAY_MAC);
332
333 switch (osNet.getNetworkType()) {
334 case VXLAN:
335 sBuilder.matchTunnelId(Long.parseLong(osNet.getProviderSegID()));
336 break;
337 case VLAN:
338 sBuilder.matchVlanId(VlanId.vlanId(osNet.getProviderSegID()));
339 break;
340 default:
341 final String error = String.format(
Ray Milkeyc6c9b172018-02-26 09:36:31 -0800342 ERR_UNSUPPORTED_NET_TYPE,
daniel parkeeb8e042018-02-21 14:06:58 +0900343 osNet.getNetworkType().toString());
344 throw new IllegalStateException(error);
345 }
346
Jian Li1064e4f2018-05-29 16:16:53 +0900347 OpenstackNode selectedGatewayNode = getGwByComputeDevId(gateways, instPort.deviceId());
348
daniel parkeeb8e042018-02-21 14:06:58 +0900349 if (selectedGatewayNode == null) {
daniel parkc2a2ed62018-04-10 15:17:42 +0900350 final String errorFormat = ERR_FLOW + "no gateway node selected";
351 throw new IllegalStateException(errorFormat);
daniel parkeeb8e042018-02-21 14:06:58 +0900352 }
353 treatment = DefaultTrafficTreatment.builder()
354 .extension(buildExtension(
355 deviceService,
356 instPort.deviceId(),
357 selectedGatewayNode.dataIp().getIp4Address()),
358 instPort.deviceId())
359 .setOutput(osNodeService.node(instPort.deviceId()).tunnelPortNum())
360 .build();
361
362 osFlowRuleService.setRule(
363 appId,
364 instPort.deviceId(),
365 sBuilder.build(),
366 treatment,
367 PRIORITY_EXTERNAL_FLOATING_ROUTING_RULE,
368 ROUTING_TABLE,
369 install);
daniel parkc2a2ed62018-04-10 15:17:42 +0900370 log.trace("Succeeded to set flow rules from compute node to gateway on compute node");
daniel parkeeb8e042018-02-21 14:06:58 +0900371 }
372
Jian Lide679782018-06-05 01:41:29 +0900373 private void setDownstreamInternalRules(NetFloatingIP floatingIp,
374 Network osNet,
375 InstancePort instPort,
376 boolean install) {
Hyunsun Moon0d457362017-06-27 17:19:41 +0900377 OpenstackNode cNode = osNodeService.node(instPort.deviceId());
378 if (cNode == null) {
379 final String error = String.format("Cannot find openstack node for device %s",
380 instPort.deviceId());
381 throw new IllegalStateException(error);
382 }
383 if (osNet.getNetworkType() == NetworkType.VXLAN && cNode.dataIp() == null) {
Jian Li71670d12018-03-02 21:31:07 +0900384 final String errorFormat = ERR_FLOW + "VXLAN mode is not ready for %s";
385 final String error = String.format(errorFormat, floatingIp, cNode.hostname());
Hyunsun Moon0d457362017-06-27 17:19:41 +0900386 throw new IllegalStateException(error);
387 }
388 if (osNet.getNetworkType() == NetworkType.VLAN && cNode.vlanIntf() == null) {
Jian Li71670d12018-03-02 21:31:07 +0900389 final String errorFormat = ERR_FLOW + "VLAN mode is not ready for %s";
390 final String error = String.format(errorFormat, floatingIp, cNode.hostname());
Hyunsun Moon0d457362017-06-27 17:19:41 +0900391 throw new IllegalStateException(error);
Hyunsun Moon44aac662017-02-18 02:07:01 +0900392 }
393
394 IpAddress floating = IpAddress.valueOf(floatingIp.getFloatingIpAddress());
Hyunsun Moon44aac662017-02-18 02:07:01 +0900395
Jian Lide679782018-06-05 01:41:29 +0900396 // TODO: following code snippet will be refactored sooner or later
Hyunsun Moon0d457362017-06-27 17:19:41 +0900397 osNodeService.completeNodes(GATEWAY).forEach(gNode -> {
Hyunsun Moon0d457362017-06-27 17:19:41 +0900398 // access from one VM to the others via floating IP
Hyunsun Moon44aac662017-02-18 02:07:01 +0900399 TrafficSelector internalSelector = DefaultTrafficSelector.builder()
400 .matchEthType(Ethernet.TYPE_IPV4)
401 .matchIPDst(floating.toIpPrefix())
Hyunsun Moon0d457362017-06-27 17:19:41 +0900402 .matchInPort(gNode.tunnelPortNum())
Hyunsun Moon44aac662017-02-18 02:07:01 +0900403 .build();
404
daniel parkee8700b2017-05-11 15:50:03 +0900405 TrafficTreatment.Builder internalBuilder = DefaultTrafficTreatment.builder()
Hyunsun Moon44aac662017-02-18 02:07:01 +0900406 .setEthSrc(Constants.DEFAULT_GATEWAY_MAC)
407 .setEthDst(instPort.macAddress())
daniel parkee8700b2017-05-11 15:50:03 +0900408 .setIpDst(instPort.ipAddress().getIp4Address());
409
410 switch (osNet.getNetworkType()) {
411 case VXLAN:
412 internalBuilder.setTunnelId(Long.valueOf(osNet.getProviderSegID()))
413 .extension(buildExtension(
414 deviceService,
Hyunsun Moon0d457362017-06-27 17:19:41 +0900415 gNode.intgBridge(),
416 cNode.dataIp().getIp4Address()),
417 gNode.intgBridge())
daniel parkee8700b2017-05-11 15:50:03 +0900418 .setOutput(PortNumber.IN_PORT);
419 break;
420 case VLAN:
421 internalBuilder.pushVlan()
422 .setVlanId(VlanId.vlanId(osNet.getProviderSegID()))
423 .setOutput(PortNumber.IN_PORT);
424 break;
425 default:
Ray Milkeyc6c9b172018-02-26 09:36:31 -0800426 final String error = String.format(ERR_UNSUPPORTED_NET_TYPE,
Hyunsun Moon0d457362017-06-27 17:19:41 +0900427 osNet.getNetworkType());
daniel parkee8700b2017-05-11 15:50:03 +0900428 throw new IllegalStateException(error);
429 }
Hyunsun Moon44aac662017-02-18 02:07:01 +0900430
sanghodc375372017-06-08 10:41:30 +0900431 osFlowRuleService.setRule(
Hyunsun Moon44aac662017-02-18 02:07:01 +0900432 appId,
Hyunsun Moon0d457362017-06-27 17:19:41 +0900433 gNode.intgBridge(),
Hyunsun Moon44aac662017-02-18 02:07:01 +0900434 internalSelector,
daniel parkee8700b2017-05-11 15:50:03 +0900435 internalBuilder.build(),
Hyunsun Moon44aac662017-02-18 02:07:01 +0900436 PRIORITY_FLOATING_INTERNAL,
sanghodc375372017-06-08 10:41:30 +0900437 GW_COMMON_TABLE,
Hyunsun Moon44aac662017-02-18 02:07:01 +0900438 install);
439 });
daniel parkc2a2ed62018-04-10 15:17:42 +0900440 log.trace("Succeeded to set flow rules for downstream on gateway nodes");
Hyunsun Moon44aac662017-02-18 02:07:01 +0900441 }
442
Jian Lide679782018-06-05 01:41:29 +0900443 private void setDownstreamExternalRulesHelper(NetFloatingIP floatingIp,
444 Network osNet,
445 InstancePort instPort,
446 ExternalPeerRouter externalPeerRouter,
447 Set<OpenstackNode> gateways, boolean install) {
448 OpenstackNode cNode = osNodeService.node(instPort.deviceId());
449 if (cNode == null) {
450 final String error = String.format("Cannot find openstack node for device %s",
451 instPort.deviceId());
452 throw new IllegalStateException(error);
453 }
454 if (osNet.getNetworkType() == NetworkType.VXLAN && cNode.dataIp() == null) {
455 final String errorFormat = ERR_FLOW + "VXLAN mode is not ready for %s";
456 final String error = String.format(errorFormat, floatingIp, cNode.hostname());
457 throw new IllegalStateException(error);
458 }
459 if (osNet.getNetworkType() == NetworkType.VLAN && cNode.vlanIntf() == null) {
460 final String errorFormat = ERR_FLOW + "VLAN mode is not ready for %s";
461 final String error = String.format(errorFormat, floatingIp, cNode.hostname());
462 throw new IllegalStateException(error);
463 }
464
465 IpAddress floating = IpAddress.valueOf(floatingIp.getFloatingIpAddress());
466
467 OpenstackNode selectedGatewayNode = getGwByComputeDevId(gateways, instPort.deviceId());
468
469 if (selectedGatewayNode == null) {
470 final String errorFormat = ERR_FLOW + "no gateway node selected";
471 throw new IllegalStateException(errorFormat);
472 }
473
474 TrafficSelector.Builder externalSelectorBuilder = DefaultTrafficSelector.builder()
475 .matchEthType(Ethernet.TYPE_IPV4)
476 .matchIPDst(floating.toIpPrefix());
477
478 TrafficTreatment.Builder externalTreatmentBuilder = DefaultTrafficTreatment.builder()
479 .setEthSrc(Constants.DEFAULT_GATEWAY_MAC)
480 .setEthDst(instPort.macAddress())
481 .setIpDst(instPort.ipAddress().getIp4Address());
482
483 if (!externalPeerRouter.externalPeerRouterVlanId().equals(VlanId.NONE)) {
484 externalSelectorBuilder.matchVlanId(externalPeerRouter.externalPeerRouterVlanId()).build();
485 externalTreatmentBuilder.popVlan();
486 }
487
488 switch (osNet.getNetworkType()) {
489 case VXLAN:
490 externalTreatmentBuilder.setTunnelId(Long.valueOf(osNet.getProviderSegID()))
491 .extension(buildExtension(
492 deviceService,
493 selectedGatewayNode.intgBridge(),
494 cNode.dataIp().getIp4Address()),
495 selectedGatewayNode.intgBridge())
496 .setOutput(selectedGatewayNode.tunnelPortNum());
497 break;
498 case VLAN:
499 externalTreatmentBuilder.pushVlan()
500 .setVlanId(VlanId.vlanId(osNet.getProviderSegID()))
501 .setOutput(selectedGatewayNode.vlanPortNum());
502 break;
503 default:
504 final String error = String.format(ERR_UNSUPPORTED_NET_TYPE,
505 osNet.getNetworkType());
506 throw new IllegalStateException(error);
507 }
508
509 osFlowRuleService.setRule(
510 appId,
511 selectedGatewayNode.intgBridge(),
512 externalSelectorBuilder.build(),
513 externalTreatmentBuilder.build(),
514 PRIORITY_FLOATING_EXTERNAL,
515 GW_COMMON_TABLE,
516 install);
517 }
518
Hyunsun Moon44aac662017-02-18 02:07:01 +0900519 private void setUpstreamRules(NetFloatingIP floatingIp, Network osNet,
daniel park32b42202018-03-14 16:53:44 +0900520 InstancePort instPort, ExternalPeerRouter externalPeerRouter,
521 boolean install) {
Hyunsun Moon44aac662017-02-18 02:07:01 +0900522 IpAddress floating = IpAddress.valueOf(floatingIp.getFloatingIpAddress());
daniel parkee8700b2017-05-11 15:50:03 +0900523 TrafficSelector.Builder sBuilder = DefaultTrafficSelector.builder()
Hyunsun Moon44aac662017-02-18 02:07:01 +0900524 .matchEthType(Ethernet.TYPE_IPV4)
daniel parkee8700b2017-05-11 15:50:03 +0900525 .matchIPSrc(instPort.ipAddress().toIpPrefix());
526
527 switch (osNet.getNetworkType()) {
528 case VXLAN:
529 sBuilder.matchTunnelId(Long.valueOf(osNet.getProviderSegID()));
530 break;
531 case VLAN:
532 sBuilder.matchVlanId(VlanId.vlanId(osNet.getProviderSegID()));
533 break;
534 default:
Ray Milkeyc6c9b172018-02-26 09:36:31 -0800535 final String error = String.format(ERR_UNSUPPORTED_NET_TYPE,
Hyunsun Moon0d457362017-06-27 17:19:41 +0900536 osNet.getNetworkType());
daniel parkee8700b2017-05-11 15:50:03 +0900537 throw new IllegalStateException(error);
538 }
Hyunsun Moon44aac662017-02-18 02:07:01 +0900539
Daniel Park75e3d7f2018-05-29 14:43:53 +0900540 TrafficSelector selector = sBuilder.build();
daniel parkeeb8e042018-02-21 14:06:58 +0900541
Hyunsun Moon0d457362017-06-27 17:19:41 +0900542 osNodeService.completeNodes(GATEWAY).forEach(gNode -> {
Daniel Park75e3d7f2018-05-29 14:43:53 +0900543 TrafficTreatment.Builder tBuilder = DefaultTrafficTreatment.builder()
544 .setIpSrc(floating.getIp4Address())
545 .setEthSrc(instPort.macAddress())
546 .setEthDst(externalPeerRouter.externalPeerRouterMac());
Hyunsun Moon44aac662017-02-18 02:07:01 +0900547
Daniel Park75e3d7f2018-05-29 14:43:53 +0900548 if (osNet.getNetworkType().equals(NetworkType.VLAN)) {
549 tBuilder.popVlan();
550 }
551
552 if (!externalPeerRouter.externalPeerRouterVlanId().equals(VlanId.NONE)) {
553 tBuilder.pushVlan().setVlanId(externalPeerRouter.externalPeerRouterVlanId());
554 }
sanghodc375372017-06-08 10:41:30 +0900555 osFlowRuleService.setRule(
Hyunsun Moon44aac662017-02-18 02:07:01 +0900556 appId,
Hyunsun Moon0d457362017-06-27 17:19:41 +0900557 gNode.intgBridge(),
Daniel Park75e3d7f2018-05-29 14:43:53 +0900558 selector,
daniel parkeeb8e042018-02-21 14:06:58 +0900559 tBuilder.setOutput(gNode.uplinkPortNum()).build(),
Hyunsun Moon44aac662017-02-18 02:07:01 +0900560 PRIORITY_FLOATING_EXTERNAL,
sanghodc375372017-06-08 10:41:30 +0900561 GW_COMMON_TABLE,
Hyunsun Moon44aac662017-02-18 02:07:01 +0900562 install);
Daniel Park75e3d7f2018-05-29 14:43:53 +0900563 });
daniel parkc2a2ed62018-04-10 15:17:42 +0900564 log.trace("Succeeded to set flow rules for upstream on gateway nodes");
Hyunsun Moon44aac662017-02-18 02:07:01 +0900565 }
566
daniel park32b42202018-03-14 16:53:44 +0900567 private ExternalPeerRouter externalPeerRouter(Network network) {
daniel parkeeb8e042018-02-21 14:06:58 +0900568 if (network == null) {
569 return null;
570 }
571
572 Subnet subnet = osNetworkService.subnets(network.getId()).stream().findAny().orElse(null);
573
574 if (subnet == null) {
575 return null;
576 }
577
Jian Lif3a28b02018-06-11 21:29:13 +0900578 RouterInterface osRouterIface = osRouterAdminService.routerInterfaces().stream()
daniel parkeeb8e042018-02-21 14:06:58 +0900579 .filter(i -> Objects.equals(i.getSubnetId(), subnet.getId()))
580 .findAny().orElse(null);
581 if (osRouterIface == null) {
582 return null;
583 }
584
Jian Lif3a28b02018-06-11 21:29:13 +0900585 Router osRouter = osRouterAdminService.router(osRouterIface.getId());
daniel parkeeb8e042018-02-21 14:06:58 +0900586 if (osRouter == null) {
587 return null;
588 }
589 if (osRouter.getExternalGatewayInfo() == null) {
590 return null;
591 }
592
593 ExternalGateway exGatewayInfo = osRouter.getExternalGatewayInfo();
daniel park65e1c202018-04-03 13:15:28 +0900594 return osNetworkService.externalPeerRouter(exGatewayInfo);
daniel parkeeb8e042018-02-21 14:06:58 +0900595 }
daniel park65e1c202018-04-03 13:15:28 +0900596
Jian Li99892e92018-04-13 14:59:39 +0900597 private void associateFloatingIp(NetFloatingIP osFip) {
598 Port osPort = osNetworkService.port(osFip.getPortId());
599 if (osPort == null) {
600 final String errorFormat = ERR_FLOW + "port(%s) not found";
601 final String error = String.format(errorFormat,
602 osFip.getFloatingIpAddress(), osFip.getPortId());
603 throw new IllegalStateException(error);
604 }
605 // set floating IP rules only if the port is associated to a VM
606 if (!Strings.isNullOrEmpty(osPort.getDeviceId())) {
Jian Lie1a39032018-06-19 21:49:36 +0900607
608 if (instancePortService.instancePort(osPort.getId()) == null) {
609 log.info("Try to associate the fip {} with a terminated VM",
610 osFip.getFloatingIpAddress());
611 pendingInstPortIds.put(osPort.getId(), osFip);
612 return;
613 }
614
Jian Li1064e4f2018-05-29 16:16:53 +0900615 setFloatingIpRules(osFip, osPort, null, true);
Jian Li99892e92018-04-13 14:59:39 +0900616 }
617 }
618
619 private void disassociateFloatingIp(NetFloatingIP osFip, String portId) {
620 Port osPort = osNetworkService.port(portId);
621 if (osPort == null) {
Jian Lie1a39032018-06-19 21:49:36 +0900622 osPort = terminatedOsPorts.get(portId);
623 terminatedOsPorts.remove(portId);
Jian Li99892e92018-04-13 14:59:39 +0900624 }
Jian Lie1a39032018-06-19 21:49:36 +0900625
626 if (osPort == null) {
627 final String errorFormat = ERR_FLOW + "port(%s) not found";
628 final String error = String.format(errorFormat,
629 osFip.getFloatingIpAddress(), osFip.getPortId());
630 throw new IllegalStateException(error);
631 }
632
Jian Li99892e92018-04-13 14:59:39 +0900633 // set floating IP rules only if the port is associated to a VM
634 if (!Strings.isNullOrEmpty(osPort.getDeviceId())) {
Jian Lie1a39032018-06-19 21:49:36 +0900635
Jian Lie1a39032018-06-19 21:49:36 +0900636 if (instancePortService.instancePort(osPort.getId()) == null) {
637
638 // in case there is pending instance port, we simply remove that
639 // port, otherwise, we directly go with rule removal
640 if (pendingInstPortIds.containsKey(osPort.getId())) {
641 log.info("Try to disassociate the fip {} with a terminated VM",
642 osFip.getFloatingIpAddress());
643 pendingInstPortIds.remove(osPort.getId());
644 return;
645 }
646 }
647
Jian Li1064e4f2018-05-29 16:16:53 +0900648 setFloatingIpRules(osFip, osPort, null, false);
Jian Li99892e92018-04-13 14:59:39 +0900649 }
650 }
651
Hyunsun Moon0d457362017-06-27 17:19:41 +0900652 private class InternalFloatingIpListener implements OpenstackRouterListener {
Hyunsun Moon44aac662017-02-18 02:07:01 +0900653
654 @Override
655 public boolean isRelevant(OpenstackRouterEvent event) {
656 // do not allow to proceed without leadership
657 NodeId leader = leadershipService.getLeader(appId.name());
658 if (!Objects.equals(localNodeId, leader)) {
659 return false;
660 }
661 return event.floatingIp() != null;
662 }
663
664 @Override
665 public void event(OpenstackRouterEvent event) {
666 switch (event.type()) {
667 case OPENSTACK_FLOATING_IP_ASSOCIATED:
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900668 eventExecutor.execute(() -> {
Hyunsun Moonb720e632017-05-16 15:41:36 +0900669 NetFloatingIP osFip = event.floatingIp();
670 associateFloatingIp(osFip);
671 log.info("Associated floating IP {}:{}",
672 osFip.getFloatingIpAddress(), osFip.getFixedIpAddress());
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900673 });
674 break;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900675 case OPENSTACK_FLOATING_IP_DISASSOCIATED:
676 eventExecutor.execute(() -> {
Hyunsun Moonb720e632017-05-16 15:41:36 +0900677 NetFloatingIP osFip = event.floatingIp();
678 disassociateFloatingIp(osFip, event.portId());
679 log.info("Disassociated floating IP {}:{}",
680 osFip.getFloatingIpAddress(), osFip.getFixedIpAddress());
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900681 });
682 break;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900683 case OPENSTACK_FLOATING_IP_CREATED:
Hyunsun Moonb720e632017-05-16 15:41:36 +0900684 eventExecutor.execute(() -> {
685 NetFloatingIP osFip = event.floatingIp();
686 if (!Strings.isNullOrEmpty(osFip.getPortId())) {
687 associateFloatingIp(event.floatingIp());
688 }
689 log.info("Created floating IP {}", osFip.getFloatingIpAddress());
690 });
691 break;
Jian Lia171a432018-06-11 11:52:11 +0900692 case OPENSTACK_FLOATING_IP_REMOVED:
693 eventExecutor.execute(() -> {
694 NetFloatingIP osFip = event.floatingIp();
695 if (!Strings.isNullOrEmpty(osFip.getPortId())) {
696 disassociateFloatingIp(osFip, osFip.getPortId());
697 }
698 log.info("Removed floating IP {}", osFip.getFloatingIpAddress());
699 });
700 break;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900701 case OPENSTACK_FLOATING_IP_UPDATED:
Hyunsun Moon44aac662017-02-18 02:07:01 +0900702 case OPENSTACK_ROUTER_CREATED:
703 case OPENSTACK_ROUTER_UPDATED:
704 case OPENSTACK_ROUTER_REMOVED:
705 case OPENSTACK_ROUTER_INTERFACE_ADDED:
706 case OPENSTACK_ROUTER_INTERFACE_UPDATED:
707 case OPENSTACK_ROUTER_INTERFACE_REMOVED:
708 default:
709 // do nothing for the other events
710 break;
711 }
712 }
713 }
714
715 private class InternalNodeListener implements OpenstackNodeListener {
716
717 @Override
718 public boolean isRelevant(OpenstackNodeEvent event) {
719 // do not allow to proceed without leadership
720 NodeId leader = leadershipService.getLeader(appId.name());
721 if (!Objects.equals(localNodeId, leader)) {
722 return false;
723 }
724 return event.subject().type() == GATEWAY;
725 }
726
727 @Override
728 public void event(OpenstackNodeEvent event) {
Hyunsun Moon44aac662017-02-18 02:07:01 +0900729
730 switch (event.type()) {
Hyunsun Moon0d457362017-06-27 17:19:41 +0900731 case OPENSTACK_NODE_COMPLETE:
Hyunsun Moon44aac662017-02-18 02:07:01 +0900732 eventExecutor.execute(() -> {
Jian Lif3a28b02018-06-11 21:29:13 +0900733 for (NetFloatingIP fip : osRouterAdminService.floatingIps()) {
Jian Lie1a39032018-06-19 21:49:36 +0900734
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900735 if (Strings.isNullOrEmpty(fip.getPortId())) {
736 continue;
737 }
Jian Lie1a39032018-06-19 21:49:36 +0900738
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900739 Port osPort = osNetworkService.port(fip.getPortId());
740 if (osPort == null) {
741 log.warn("Failed to set floating IP {}", fip.getId());
742 continue;
743 }
Jian Lie1a39032018-06-19 21:49:36 +0900744
Jian Lie1a39032018-06-19 21:49:36 +0900745 // Note that, at OPENSTACK_INSTANCE_PORT_DETECTED phase,
746 // we will install floating IP related rules by
747 // referring to the key and value stored in pending map
748 if (!Strings.isNullOrEmpty(osPort.getDeviceId()) &&
749 instancePortService.instancePort(fip.getPortId()) == null) {
750 pendingInstPortIds.put(fip.getPortId(), fip);
751 continue;
752 }
Jian Liec5c32b2018-07-13 14:28:58 +0900753
Jian Li1064e4f2018-05-29 16:16:53 +0900754 setFloatingIpRules(fip, osPort, event.subject(), true);
Hyunsun Moon7a5f9042017-05-11 18:19:01 +0900755 }
Hyunsun Moon44aac662017-02-18 02:07:01 +0900756 });
757 break;
Hyunsun Moon0d457362017-06-27 17:19:41 +0900758 case OPENSTACK_NODE_INCOMPLETE:
Jian Li1064e4f2018-05-29 16:16:53 +0900759 eventExecutor.execute(() -> {
Jian Lif3a28b02018-06-11 21:29:13 +0900760 for (NetFloatingIP fip : osRouterAdminService.floatingIps()) {
Jian Li1064e4f2018-05-29 16:16:53 +0900761 if (Strings.isNullOrEmpty(fip.getPortId())) {
762 continue;
763 }
764 Port osPort = osNetworkService.port(fip.getPortId());
765 if (osPort == null) {
766 log.warn("Failed to set floating IP {}", fip.getId());
767 continue;
768 }
769 Network osNet = osNetworkService.network(osPort.getNetworkId());
770 if (osNet == null) {
771 final String errorFormat = ERR_FLOW + "no network(%s) exists";
772 final String error = String.format(errorFormat,
773 fip.getFloatingIpAddress(),
774 osPort.getNetworkId());
775 throw new IllegalStateException(error);
776 }
777 MacAddress srcMac = MacAddress.valueOf(osPort.getMacAddress());
778 log.trace("Mac address of openstack port: {}", srcMac);
779 InstancePort instPort = instancePortService.instancePort(srcMac);
780
781 if (instPort == null) {
782 final String errorFormat = ERR_FLOW + "no host(MAC:%s) found";
783 final String error = String.format(errorFormat,
784 fip.getFloatingIpAddress(), srcMac);
785 throw new IllegalStateException(error);
786 }
787
Jian Lide679782018-06-05 01:41:29 +0900788 ExternalPeerRouter externalPeerRouter = externalPeerRouter(osNet);
789 if (externalPeerRouter == null) {
790 final String errorFormat = ERR_FLOW + "no external peer router found";
791 throw new IllegalStateException(errorFormat);
792 }
793
794 updateComputeNodeRules(instPort, osNet, event.subject(), false);
795 updateGatewayNodeRules(fip, instPort, osNet,
796 externalPeerRouter, event.subject(), false);
Jian Li1064e4f2018-05-29 16:16:53 +0900797 }
798 });
799 break;
Hyunsun Moon44aac662017-02-18 02:07:01 +0900800 default:
Hyunsun Moon0d457362017-06-27 17:19:41 +0900801 // do nothing
Hyunsun Moon44aac662017-02-18 02:07:01 +0900802 break;
803 }
804 }
805 }
Jian Li99892e92018-04-13 14:59:39 +0900806
Jian Li24ec59f2018-05-23 19:01:25 +0900807 private class InternalInstancePortListener implements InstancePortListener {
808
809 @Override
810 public boolean isRelevant(InstancePortEvent event) {
Jian Li24ec59f2018-05-23 19:01:25 +0900811
Jian Lie1a39032018-06-19 21:49:36 +0900812 if (event.type() == OPENSTACK_INSTANCE_MIGRATION_ENDED ||
813 event.type() == OPENSTACK_INSTANCE_MIGRATION_STARTED) {
814 Set<NetFloatingIP> ips = osRouterAdminService.floatingIps();
815 NetFloatingIP fip = associatedFloatingIp(event.subject(), ips);
816
817 // we check the possible NPE to avoid duplicated null check
818 // for OPENSTACK_INSTANCE_MIGRATION_ENDED and
819 // OPENSTACK_INSTANCE_MIGRATION_STARTED cases
820 if (fip == null || !isAssociatedWithVM(osNetworkService, fip)) {
821 return false;
822 }
823 }
824
825 // do not allow to proceed without leadership
826 NodeId leader = leadershipService.getLeader(appId.name());
827
828 return Objects.equals(localNodeId, leader);
Jian Li24ec59f2018-05-23 19:01:25 +0900829 }
830
831 @Override
832 public void event(InstancePortEvent event) {
Jian Lie1a39032018-06-19 21:49:36 +0900833 InstancePort instPort = event.subject();
Jian Li24ec59f2018-05-23 19:01:25 +0900834 Set<OpenstackNode> gateways = osNodeService.completeNodes(GATEWAY);
835
Jian Lie1a39032018-06-19 21:49:36 +0900836 Set<NetFloatingIP> ips = osRouterAdminService.floatingIps();
837 NetFloatingIP fip;
838 Port osPort;
839 Network osNet;
840 ExternalPeerRouter externalPeerRouter;
Jian Li24ec59f2018-05-23 19:01:25 +0900841
842 switch (event.type()) {
Jian Lie1a39032018-06-19 21:49:36 +0900843 case OPENSTACK_INSTANCE_PORT_DETECTED:
Jian Li77323c52018-06-24 01:26:18 +0900844 if (instPort != null && instPort.portId() != null) {
845 String portId = instPort.portId();
Jian Lie1a39032018-06-19 21:49:36 +0900846
Jian Li77323c52018-06-24 01:26:18 +0900847 terminatedOsPorts.remove(portId);
848
849 Port port = osNetworkService.port(portId);
850
851 if (pendingInstPortIds.containsKey(portId) && port != null) {
852 setFloatingIpRules(pendingInstPortIds.get(portId),
853 port, null, true);
854 pendingInstPortIds.remove(portId);
855 }
Jian Lie1a39032018-06-19 21:49:36 +0900856 }
857
858 break;
859
Jian Li24ec59f2018-05-23 19:01:25 +0900860 case OPENSTACK_INSTANCE_MIGRATION_STARTED:
Jian Lie1a39032018-06-19 21:49:36 +0900861
862 fip = associatedFloatingIp(event.subject(), ips);
863
864 if (fip == null) {
865 return;
866 }
867
868 osPort = osNetworkService.port(fip.getPortId());
869 osNet = osNetworkService.network(osPort.getNetworkId());
870 externalPeerRouter = externalPeerRouter(osNet);
871
872 if (externalPeerRouter == null) {
873 final String errorFormat = ERR_FLOW + "no external peer router found";
874 throw new IllegalStateException(errorFormat);
875 }
876
Jian Li24ec59f2018-05-23 19:01:25 +0900877 eventExecutor.execute(() -> {
878
879 // since downstream internal rules are located in all gateway
880 // nodes, therefore, we simply update the rules with new compute node info
881 setDownstreamInternalRules(fip, osNet, event.subject(), true);
882
883 // since DownstreamExternal rules should only be placed in
884 // corresponding gateway node, we need to install new rule to
885 // the corresponding gateway node
886 setDownstreamExternalRulesHelper(fip, osNet,
887 event.subject(), externalPeerRouter, gateways, true);
888
889 // since ComputeNodeToGateway rules should only be placed in
890 // corresponding compute node, we need to install new rule to
891 // the target compute node, and remove rules from original node
892 setComputeNodeToGatewayHelper(event.subject(), osNet, gateways, true);
Jian Li24ec59f2018-05-23 19:01:25 +0900893 });
894 break;
895 case OPENSTACK_INSTANCE_MIGRATION_ENDED:
896
Jian Liec5c32b2018-07-13 14:28:58 +0900897 InstancePort revisedInstPort = swapStaleLocation(event.subject());
898
899 fip = associatedFloatingIp(revisedInstPort, ips);
Jian Lie1a39032018-06-19 21:49:36 +0900900
901 if (fip == null) {
902 return;
903 }
904
905 osPort = osNetworkService.port(fip.getPortId());
906 osNet = osNetworkService.network(osPort.getNetworkId());
907 externalPeerRouter = externalPeerRouter(osNet);
908
909 if (externalPeerRouter == null) {
910 final String errorFormat = ERR_FLOW + "no external peer router found";
911 throw new IllegalStateException(errorFormat);
912 }
913
914 // If we only have one gateway, we simply do not remove any
Jian Li24ec59f2018-05-23 19:01:25 +0900915 // flow rules from either gateway or compute node
916 if (gateways.size() == 1) {
917 return;
918 }
919
Jian Lie1a39032018-06-19 21:49:36 +0900920 // Checks whether the destination compute node's device id
Jian Li24ec59f2018-05-23 19:01:25 +0900921 // has identical gateway hash or not
922 // if it is true, we simply do not remove the rules, as
923 // it has been overwritten at port detention event
924 // if it is false, we will remove the rules
Jian Liec5c32b2018-07-13 14:28:58 +0900925 DeviceId newDeviceId = event.subject().deviceId();
926 DeviceId oldDeviceId = revisedInstPort.deviceId();
Jian Li24ec59f2018-05-23 19:01:25 +0900927
928 OpenstackNode oldGateway = getGwByComputeDevId(gateways, oldDeviceId);
929 OpenstackNode newGateway = getGwByComputeDevId(gateways, newDeviceId);
930
931 if (oldGateway != null && oldGateway.equals(newGateway)) {
932 return;
933 }
934
935 eventExecutor.execute(() -> {
936
Jian Lie1a39032018-06-19 21:49:36 +0900937 // We need to remove the old ComputeNodeToGateway rules from
Jian Li24ec59f2018-05-23 19:01:25 +0900938 // original compute node
Jian Liec5c32b2018-07-13 14:28:58 +0900939 setComputeNodeToGatewayHelper(revisedInstPort, osNet, gateways, false);
Jian Li24ec59f2018-05-23 19:01:25 +0900940
Jian Lie1a39032018-06-19 21:49:36 +0900941 // Since DownstreamExternal rules should only be placed in
Jian Li24ec59f2018-05-23 19:01:25 +0900942 // corresponding gateway node, we need to remove old rule from
943 // the corresponding gateway node
Jian Liec5c32b2018-07-13 14:28:58 +0900944 setDownstreamExternalRulesHelper(fip, osNet, revisedInstPort,
945 externalPeerRouter, gateways, false);
Jian Li24ec59f2018-05-23 19:01:25 +0900946 });
947 break;
948 default:
949 break;
950 }
951 }
952 }
Jian Lie1a39032018-06-19 21:49:36 +0900953
954 private class InternalOpenstackNetworkListener implements OpenstackNetworkListener {
955
956 @Override
957 public boolean isRelevant(OpenstackNetworkEvent event) {
958 // do not allow to proceed without leadership
959 NodeId leader = leadershipService.getLeader(appId.name());
960 return Objects.equals(localNodeId, leader);
961 }
962
963 @Override
964 public void event(OpenstackNetworkEvent event) {
965 switch (event.type()) {
966 case OPENSTACK_PORT_REMOVED:
Jian Liec5c32b2018-07-13 14:28:58 +0900967 String portId = event.port().getId();
968 terminatedOsPorts.put(portId, event.port());
969
970 InstancePort instPort = instancePortService.instancePort(portId);
971 InstancePort updated = instPort.updateState(PENDING_REMOVAL);
972 instancePortService.updateInstancePort(updated);
973
974 updateFipStore(instPort);
975
976 // we will hold the instance port in its store, until its
977 // state is changed to REMOVED
978 while (true) {
979 if (instancePortService.instancePort(portId).state() ==
980 REMOVED) {
981 instancePortService.removeInstancePort(portId);
982 break;
983 }
Jian Lie1a39032018-06-19 21:49:36 +0900984 }
985 break;
986 default:
987 break;
988 }
989 }
990
991 private void updateFipStore(InstancePort port) {
992
993 if (port == null) {
994 return;
995 }
996
997 Set<NetFloatingIP> ips = osRouterAdminService.floatingIps();
998 for (NetFloatingIP fip : ips) {
999 if (Strings.isNullOrEmpty(fip.getFixedIpAddress())) {
1000 continue;
1001 }
1002 if (Strings.isNullOrEmpty(fip.getFloatingIpAddress())) {
1003 continue;
1004 }
1005 if (fip.getFixedIpAddress().equals(port.ipAddress().toString())) {
1006 NeutronFloatingIP neutronFip = (NeutronFloatingIP) fip;
1007 // invalidate bound fixed IP and port
1008 neutronFip.setFixedIpAddress(null);
1009 neutronFip.setPortId(null);
Jian Lie1a39032018-06-19 21:49:36 +09001010
1011 // Following update will in turn trigger
1012 // OPENSTACK_FLOATING_IP_DISASSOCIATED event
1013 osRouterAdminService.updateFloatingIp(neutronFip);
1014 log.info("Updated floating IP {}, due to host removal",
1015 neutronFip.getFloatingIpAddress());
1016 }
1017 }
1018 }
1019 }
Hyunsun Moon44aac662017-02-18 02:07:01 +09001020}