Unresolved ECMP nexthop contributes a hash-selectable Drop entry instead of being excluded
I maintainer di solito rispondono entro 1 giorno
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 4/5
- Tempo stimato
- 3-5 giorni
- Idoneità per principianti
- 42/100
- Tipo di issue
- Bug
- Chiarezza
- Da chiarire
- Stato di attività
- Attiva
- Stack tecnologico
- rust
- Ambito
- networking
Direzione di ricerca
Inizia da routing/src/rib/rib2fib.rs, in particolare da VxlanEncapsulation::resolve, build_pkt_instructions e FibEntry::is_valid, quindi segui FibRoute::from_nhopkeys/get_fibentry in routing/src/fib/fibgroupstore.rs. Controlla il percorso di refresh di Rmac::add in routing/src/router/cpi.rs. Il lavoro è concluso quando viene confermato se un RMAC non risolto crea una voce Drop selezionabile tramite hash e viene stabilito il comportamento previsto o la limitazione.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
Note: this issue originated from AI-assisted triage of githedgehog/fabricator#1482 (Claude Code), which led to reading through this code path while investigating that CI failure. The conclusions below should be treated as a starting point to verify, not a confirmed finding.
Noticed this while reading through the RIB-to-FIB path. Wanted to flag it and check whether it is already known or already being addressed.
When a route has multiple ECMP nexthops and one of them has a VXLAN encapsulation whose remote MAC (RmacStore lookup) is not yet known, that nexthop's FibGroup is built with a single Drop-action FibEntry rather than being excluded from the route.
VxlanEncapsulation::resolve returns false when the RMAC isn't known (routing/src/rib/rib2fib.rs:189-200). build_pkt_instructions treats that as force-drop rather than skip: instructions = vec![PktInstruction::Drop] (rib2fib.rs:52-69). That instruction becomes a valid FibEntry and is added to the nexthop's FibGroup, since is_valid() accepts a Drop-only entry (rib2fib.rs:107-142).
A route's forwarding set is the concatenation of its members' FibGroups (routing/src/fib/fibgroupstore.rs, FibRoute::from_nhopkeys / get_fibentry), and the ECMP hash picks uniformly across that concatenated set. So a 2-way ECMP route with one resolved member and one member whose RMAC has not arrived yet becomes a 2-entry set where one entry unconditionally drops, meaning roughly half of flows on that route would be dropped rather than the route falling back to its working path.
This would self-heal once the RMAC RPC arrives, since Rmac::add triggers refresh_fibs_by_vni (routing/src/router/cpi.rs:260-274), so any impact would be a brief window rather than a persistent one.
Questions for the dataplane team: is this a known behavior or limitation? Is there a design change already planned or landed after v0.26.0 that touches this ECMP-resolution path? Is the reading above correct, or is there something about the resolution/refresh flow that we are missing that would prevent this from actually happening in practice?
- Lingua principale
- Rust
- Stelle
- 20
- Fork
- 9
- Merge medio
- 4g 9h
- PR unite (30g)
- 35
Preparare l'ambiente
- Include un Dockerfile o un file Docker Compose
- Nessun modello di pull request
- Nessuna guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di githedgehog/dataplane
-
Allow per-expose gwgroup override for GatewayPeeringForse già presa @Fredi-raspall l’ha presa 9 giorni fa. Aperta
githedgehog/dataplane#1864 · 1 assegnatario ·
I maintainer di solito rispondono entro 1 giorno
-
Run Nvidia Infra controller, configure vtap on the DPU and peer with fabricForse già presa @sergeymatov l’ha presa 9 giorni fa. Aperta
githedgehog/dataplane#1863 · 1 assegnatario ·
I maintainer di solito rispondono entro 1 giorno
-
Dependencies: Revisit minor version pinning for `smallvec`Forse già presa @qmonnet l’ha presa 9 giorni fa. Apertadependencies
githedgehog/dataplane#1861 · 1 assegnatario ·
I maintainer di solito rispondono entro 1 giorno
-
NAT config: reject absurdly-long flow timeoutsForse già presa @qmonnet l’ha presa 14 giorni fa. Apertaarea/nat
githedgehog/dataplane#1854 · 1 assegnatario ·
I maintainer di solito rispondono entro 1 giorno
-
Fix cargo test in dataplaneForse già presa @daniel-noland l’ha presa 15 giorni fa. Aperta
githedgehog/dataplane#1853 · 1 assegnatario ·
I maintainer di solito rispondono entro 1 giorno
Tutte le issue di githedgehog/dataplane
Issue simili
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 70/100
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 1/5 Meno di un'ora Idoneità per principianti 75/100
element-hq/lk-jwt-service#248 ·
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
pact-foundation/pact-cli#154 ·
I maintainer di solito rispondono entro 3 giorni
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 72/100
antithesishq/bombadil#361 ·
I maintainer di solito rispondono entro 1 giorno
-
test(executor_l0): assert execute() TaskOutcome, not only bus events / 断言 execute() 返回的 TaskOutcomeApertatype:debt
Difficoltà 2/5 1-3 ore Idoneità per principianti 62/100
skaiy/wild_agentos#425 ·
I maintainer di solito rispondono entro 1 giorno