Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- [root@okros47 ~]# ip netns exec qrouter-3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410 iptables -nL -t nat
- Chain PREROUTING (policy ACCEPT)
- target prot opt source destination
- neutron-l3-agent-PREROUTING all -- 0.0.0.0/0 0.0.0.0/0
- Chain INPUT (policy ACCEPT)
- target prot opt source destination
- Chain OUTPUT (policy ACCEPT)
- target prot opt source destination
- neutron-l3-agent-OUTPUT all -- 0.0.0.0/0 0.0.0.0/0
- Chain POSTROUTING (policy ACCEPT)
- target prot opt source destination
- neutron-l3-agent-POSTROUTING all -- 0.0.0.0/0 0.0.0.0/0
- neutron-postrouting-bottom all -- 0.0.0.0/0 0.0.0.0/0
- Chain neutron-l3-agent-OUTPUT (1 references)
- target prot opt source destination
- DNAT all -- 0.0.0.0/0 10.48.80.107 to:10.48.79.81
- Chain neutron-l3-agent-POSTROUTING (1 references)
- target prot opt source destination
- ACCEPT all -- 0.0.0.0/0 0.0.0.0/0 ! ctstate DNAT
- Chain neutron-l3-agent-PREROUTING (1 references)
- target prot opt source destination
- REDIRECT tcp -- 0.0.0.0/0 169.254.169.254 tcp dpt:80 redir ports 9697
- DNAT all -- 0.0.0.0/0 10.48.80.107 to:10.48.79.81
- Chain neutron-l3-agent-float-snat (1 references)
- target prot opt source destination
- SNAT all -- 10.48.79.81 0.0.0.0/0 to:10.48.80.107
- Chain neutron-l3-agent-snat (1 references)
- target prot opt source destination
- neutron-l3-agent-float-snat all -- 0.0.0.0/0 0.0.0.0/0
- SNAT all -- 0.0.0.0/0 0.0.0.0/0 to:10.48.80.122
- SNAT all -- 0.0.0.0/0 0.0.0.0/0 mark match ! 0x2 ctstate DNAT to:10.48.80.122
- Chain neutron-postrouting-bottom (1 references)
- target prot opt source destination
- neutron-l3-agent-snat all -- 0.0.0.0/0 0.0.0.0/0 /* Perform source NAT on outgoing traffic. */
- [root@okros47 ~]# ip netns exec qrouter-3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410 ping 10.48.79.81
- PING 10.48.79.81 (10.48.79.81) 56(84) bytes of data.
- 64 bytes from 10.48.79.81: icmp_seq=1 ttl=64 time=1.72 ms
- 64 bytes from 10.48.79.81: icmp_seq=2 ttl=64 time=1.04 ms
- 64 bytes from 10.48.79.81: icmp_seq=3 ttl=64 time=1.12 ms
- ^C
- --- 10.48.79.81 ping statistics ---
- 3 packets transmitted, 3 received, 0% packet loss, time 2003ms
- rtt min/avg/max/mdev = 1.042/1.299/1.727/0.305 ms
- *********************************************************************************************
- ip netns exec qrouter-3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410 ip a
- 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN
- link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
- inet 127.0.0.1/8 scope host lo
- valid_lft forever preferred_lft forever
- inet6 ::1/128 scope host
- valid_lft forever preferred_lft forever
- 11: ha-d67f5823-5b: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UNKNOWN
- link/ether fa:16:3e:7a:2b:ec brd ff:ff:ff:ff:ff:ff
- inet 169.254.192.12/18 brd 169.254.255.255 scope global ha-d67f5823-5b
- valid_lft forever preferred_lft forever
- inet 169.254.0.1/24 scope global ha-d67f5823-5b
- valid_lft forever preferred_lft forever
- inet6 fe80::f816:3eff:fe7a:2bec/64 scope link
- valid_lft forever preferred_lft forever
- 14: qr-7fbee415-2d: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UNKNOWN
- link/ether fa:16:3e:45:96:a0 brd ff:ff:ff:ff:ff:ff
- inet 10.48.78.1/23 scope global qr-7fbee415-2d
- valid_lft forever preferred_lft forever
- inet6 fe80::f816:3eff:fe45:96a0/64 scope link nodad
- valid_lft forever preferred_lft forever
- 15: qg-a5c8cda0-2f: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UNKNOWN
- link/ether fa:16:3e:3b:17:3c brd ff:ff:ff:ff:ff:ff
- inet 10.48.80.122/20 scope global qg-a5c8cda0-2f
- valid_lft forever preferred_lft forever
- inet 10.48.80.107/32 scope global qg-a5c8cda0-2f
- valid_lft forever preferred_lft forever
- inet6 fe80::f816:3eff:fe3b:173c/64 scope link nodad
- valid_lft forever preferred_lft forever
- [root@okros47 ~]# ip netns exec qrouter-3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410 ping 10.48.80.107
- PING 10.48.80.107 (10.48.80.107) 56(84) bytes of data.
- 64 bytes from 10.48.80.107: icmp_seq=1 ttl=64 time=2.10 ms
- 64 bytes from 10.48.80.107: icmp_seq=2 ttl=64 time=1.61 ms
- 64 bytes from 10.48.80.107: icmp_seq=3 ttl=64 time=1.24 ms
- [root@okros47 ~]# cat /var/lib/neutron/ha_confs/3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410/keepalived.conf
- vrrp_instance VR_1 {
- state BACKUP
- interface ha-d67f5823-5b
- virtual_router_id 1
- priority 50
- nopreempt
- advert_int 2
- track_interface {
- ha-d67f5823-5b
- }
- virtual_ipaddress {
- 169.254.0.1/24 dev ha-d67f5823-5b
- }
- virtual_ipaddress_excluded {
- 10.48.78.1/23 dev qr-7fbee415-2d
- 10.48.80.107/32 dev qg-a5c8cda0-2f
- 10.48.80.122/20 dev qg-a5c8cda0-2f
- fe80::f816:3eff:fe3b:173c/64 dev qg-a5c8cda0-2f scope link
- fe80::f816:3eff:fe45:96a0/64 dev qr-7fbee415-2d scope link
- }
- virtual_routes {
- 0.0.0.0/0 via 10.48.80.1 dev qg-a5c8cda0-2f
- }
- 2016-03-02 09:52:58.007 3376 INFO neutron.agent.linux.daemon [-] Process runs with uid/gid: 996/993
- 2016-03-02 09:53:08.927 3376 DEBUG neutron.agent.l3.keepalived_state_change [-] Wrote router 3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410 state master write_state_change /usr/lib/python2.7/site-packages/neutron/agent/l3/keepalived_state_change.py:83
- 2016-03-02 09:53:09.635 3376 DEBUG neutron.agent.l3.keepalived_state_change [-] Notified agent router 3ef6de2a-3b2e-4d6f-bfd4-b8ec3045a410, state master notify_agent /usr/lib/python2.7/site-packages/neutron/agent/l3/keepalived_state_change.py:97
Advertisement
Add Comment
Please, Sign In to add comment