- Issued:
- 2017-07-12
- Updated:
- 2017-07-12
RHBA-2017:1747 - Bug Fix Advisory
Synopsis
openstack-neutron bug fix advisory
Type/Severity
Bug Fix Advisory
Red Hat Lightspeed patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated OpenStack Networking packages that resolve various issues are now
available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for
RHEL 7.
Description
Red Hat Enterprise Linux OpenStack Platform provides the facilities for
building a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware. This advisory includes
packages for:
- OpenStack Networking service
OpenStack Networking (neutron) is a virtual network service for OpenStack.
Just as OpenStack Compute (nova) provides an API to dynamically request and
configure virtual servers, OpenStack Networking provides an API to
dynamically request and configure virtual networks. These networks connect
'interfaces' from other OpenStack services (e.g. virtual NICs from Compute
VMs). The OpenStack Networking API supports extensions to provide advanced
network capabilities (e.g. QoS, ACLs, network monitoring, etc.)
This release fixes two issues:
- When router_info initialize() fails some resources (like keepalived)
may not be created. While handling this exception, the L3 agent
called _process_updated_router, which also failed trying to access
resources which were not created. With this update, the L3 agent
will have new router_info only when initialize() succeeds. When
initialize() fails (as router_info is not part of agent),
"_process_router_if_compatible" will call initialize() again and
clean up router_info.
(BZ#1404534)
- When the L3 agent node was rebooted, if the HA network port status
was already ACTIVE in the database then the agent used the same
status and spawned keepalived even if the L2 agent has not yet wired
the prots. With this, it was possible to have multiple HA masters
active at the same time. To fix this, the L3 agent explicitly sets
the port status to DOWN for all HA ports on the node; this
guarantees that when the ports become ACTIVE only when the L2 agent
has already wired the ports.
(BZ#1433726)
Solution
Before applying this update, ensure all previously released errata relevant
to your system have been applied.
Red Hat Enterprise Linux OpenStack Platform 7 runs on Red Hat Enterprise
Linux 7.3.
The Red Hat Enterprise Linux OpenStack Platform 7 Release Notes contain the
following:
- An explanation of the way in which the provided components interact to
form a working cloud computing environment.
- Technology Previews, Recommended Practices, and Known Issues.
- The channels required for Red Hat Enterprise Linux OpenStack Platform 7,
including which channels need to be enabled and disabled.
The Release Notes are available at:
https://access.redhat.com/documentation/en/red-hat-enterprise-linux-openstack-platform/7/paged/release-notes
This update is available through 'yum update' on systems registered through
Red Hat Subscription Manager. For more information about Red Hat
Subscription Manager, see:
https://access.redhat.com/documentation/en-US/Red_Hat_Subscription_Management/1/html/RHSM/index.html
Affected Products
- Red Hat OpenStack 7 x86_64
Fixes
- BZ - 1404534 - L3 agent failing with "Failed to process compatible router" errors
- BZ - 1433726 - When a network node is rebooting, all HA routers will enter a transition flapping storm
CVEs
(none)
References
(none)
Red Hat OpenStack 7
| SRPM | |
|---|---|
| openstack-neutron-2015.1.4-16.el7ost.src.rpm | SHA-256: 399c5d39bd57ae8da71013dd2f493d103ff09a8bc590485b8e858d8773a65f66 |
| x86_64 | |
| openstack-neutron-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 8c37ad85dd10205d47d79ebcedcd53881c633a0f7ddddf652f5c6ca137f0988d |
| openstack-neutron-bigswitch-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 976c7215f06e1863a0b85824d88b8dee1ad6a6a0846fb3dc7d523cbcda816f64 |
| openstack-neutron-brocade-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 9c04c99b6af340a5674e92f0b6323f1e3537cb187787737141fd30b570761261 |
| openstack-neutron-cisco-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 5c19f2dc14b0e9dc7fab3abc47c0e0a7ad269ece26385b1e71434bb334c1231e |
| openstack-neutron-common-2015.1.4-16.el7ost.noarch.rpm | SHA-256: bcbe2b7257a02c171bb7f1c7be7d233ffe05fc9a5dfb3baef8e1dbcbbbcd4762 |
| openstack-neutron-embrane-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 51a80b07444707432f9eec6440feadd738cdab7e6202afc7a401d6b86751ee35 |
| openstack-neutron-ibm-2015.1.4-16.el7ost.noarch.rpm | SHA-256: dda33d15298c80aedbf5771a7eb6b45bbc4917817c7db952326a450afd433724 |
| openstack-neutron-linuxbridge-2015.1.4-16.el7ost.noarch.rpm | SHA-256: bb260fcef81b0a1c5467a23920765bc8d580dd476ee7a8db6bf55a84613da3b2 |
| openstack-neutron-mellanox-2015.1.4-16.el7ost.noarch.rpm | SHA-256: e8462d9a764d21b7d0551fc7f69e78c7407bd69f020987121bf8e372f1989a1d |
| openstack-neutron-metaplugin-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 97fbe9cd2039a467560cf496bd02e588f67f65efc581d462f8bb23e62d54320e |
| openstack-neutron-metering-agent-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 45101302a2ed05ae57d946c8c0ff93413986bcbeb848e74a9802c77ec62aac07 |
| openstack-neutron-midonet-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 50b6ba870e130a2433cf4c7ec8c494906be7daee9d4adc1bab8b96df7a7f12ba |
| openstack-neutron-ml2-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 57d97adfda9b1da5562fb7bc93fd1fc37a9b7a2b792e6598d43de4184c938f25 |
| openstack-neutron-nec-2015.1.4-16.el7ost.noarch.rpm | SHA-256: eae15730da935415f313eae80e8d5ab3e18cb56cc40a18396189a250f24b10d2 |
| openstack-neutron-nuage-2015.1.4-16.el7ost.noarch.rpm | SHA-256: c7c17333da5a0d1623d9188e02a20a99d39792f32ae3cd3e1a14ce712bc185be |
| openstack-neutron-ofagent-2015.1.4-16.el7ost.noarch.rpm | SHA-256: f8cb28ba51bf709e3f82ec80a4212f57c54f5518e0c36aa4666eb4d68464a13b |
| openstack-neutron-oneconvergence-nvsd-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 1a631fe53a9514859aa8b8d60d89b84d10efc10020ba8ec0be452e25657ca169 |
| openstack-neutron-opencontrail-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 9bafbbda6dc014984b016a245e8bfea770f71a37e673523afa75b76c988e5f6a |
| openstack-neutron-openvswitch-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 6e98ff4c69094d450b3ccd7efde96641a40fd455c5ff9a03c2891631cf34f449 |
| openstack-neutron-ovsvapp-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 5c4acbbba5f3f663fb7e2e2922365754ffc00d5137f4dc9bc50247dac0259af0 |
| openstack-neutron-plumgrid-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 875c12b8aac1a5f52c16785ba512bed08151036e97b2cb10b44b190405fb234f |
| openstack-neutron-sriov-nic-agent-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 5c20c176dfb711428275719bcd706a2382f2beaf8eb480d583a99d5afaffc6d5 |
| openstack-neutron-vmware-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 8b5fbcb1157cf8f4f5c9e98ec5476bf34e9d3bf8313ad0c6c94df8999469bb0c |
| python-neutron-2015.1.4-16.el7ost.noarch.rpm | SHA-256: d8950d7568fd381fef49830ef36f769cd964cd02c497ebbbbd87cafb2e3e37a7 |
| python-neutron-tests-2015.1.4-16.el7ost.noarch.rpm | SHA-256: 61e2ffec06ec307a358a1af3697415085ff31c6809e1b1492b6ab1cc1b5e2bbb |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.