-
Notifications
You must be signed in to change notification settings - Fork 475
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Tunnel UDP SRC PORT security #1455
Conversation
inc/saitunnel.h
Outdated
* UDP source port outside of range defined for this tunnel, it | ||
* will be dropped. | ||
* | ||
* @type sai_bool |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
bool
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Done, thanks
@JaiOCP , @ashutosh-agrawal - please help review. |
* @default false | ||
* @validonly SAI_TUNNEL_ATTR_TYPE == SAI_TUNNEL_TYPE_VXLAN and SAI_TUNNEL_ATTR_VXLAN_UDP_SPORT_MODE == SAI_TUNNEL_VXLAN_UDP_SPORT_MODE_USER_DEFINED | ||
*/ | ||
SAI_TUNNEL_ATTR_VXLAN_UDP_SPORT_SECURITY, |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Please add either a new drop reason or a comment to include this in the existing tunnel decap drop reason.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Done
@marian-pritsak - please resolve the DCO error, so that we can merge this, thanks. |
@marian-pritsak , please address DCO error. Thanks. |
@marian-pritsak - reminder to resolve DCO error |
Signed-off-by: Marian Pritsak <[email protected]>
Question to community: Is this feature supported natively on your ASICs, or is it rather something that will have to be done with ACL?