port_settings_apply clobbers link-local addresses added via link_ipv6_create
Maintainer thường phản hồi trong vòng 1 ngày
@cfzimmerman đang làm issue này rồi.
Từ ngày 25/8/2026.
Đánh giá
Issue này chưa được đánh giá.
Mô tả
When port_settings_apply is run, it grabs a copy of dpd's internal state for each port/link, diffs it against the state requested by the API client, and then reconciles the difference.
The problem we have here is that omicron is the main (practically only) consumer of port_settings_apply, and it doesn't include any link-local IPv6 addresses in its request... since these are handled by tfportd and illumos.
tfportd learns about IPv6 link-local addresses in illumos from its reconciler, and synchronizes them into dpd via link_ipv6_create.
Both port_settings_apply and link_ipv6_create modify the same internal state: Link.ipv6
#[derive(Debug)]
pub struct Link {
pub port_id: PortId,
pub link_id: LinkId,
pub port_hdl: PortHdl,
pub asic_port_id: AsicId,
pub updated: i64,
pub presence: bool,
pub ipv6_enabled: bool,
pub tx_eq: Option<TxEq>,
pub fsm_state: asic::PortFsmState,
pub link_state: LinkState,
pub media: PortMedia,
/// A list of IPv4 addresses assigned to this link.
pub ipv4: BTreeSet<Ipv4Entry>,
/// A list of IPv6 addresses assigned to this link.
pub ipv6: BTreeSet<Ipv6Entry>, <<<<<<<<<<<
pub linkup_tracker: LinkUpTracker,
pub autoneg_tracker: AutonegTracker,
/// Configuration requested by the user/sled-agent.
pub config: LinkConfig,
/// State that actually exists in the ASIC layer.
pub(crate) plumbed: LinkPlumbed,
}
When port_settings_apply is run, the internal dpd state includes all items in Link.ipv6 (including the link-locals added by tfportd) and thus the diff always indicates that the link-local is old state that should be removed.
This results in the omicron reconciler (via port_settings_apply) and the tfport reconciler (via link_ipv6_create) battling each other and the IPv6 link-local addresses being removed from the ASIC anytime omicron's reconciler runs after the tfport reconciler... which means that periodically, the ASIC will stop punting traffic destined for that link-local address. This would affect NDP, BGP unnumbered, etc. and could potentially cause service disruptions if the blackholing were to last long enough.
- Ngôn ngữ chính
- Rust
- Star
- 21
- Fork
- 3
- Merge trung bình
- 10 giờ 45 phút
- Pull request đã merge (30 ngày)
- 2
Chuẩn bị môi trường
Dự án này không cung cấp dev container, Dockerfile hay hướng dẫn đóng góp, nên bạn cần tự thiết lập môi trường: hãy bắt đầu từ README và xem hướng dẫn đóng góp lần đầu của chúng tôi để biết các bước chung.
Bắt đầu từ đâu
- Đọc hết issue, rồi đọc hướng dẫn đóng góp của dự án.
- Bình luận trên issue rằng bạn sẽ nhận — tránh hai người làm cùng một việc.
- Fork repository và làm thay đổi trên một nhánh.
- Mở pull request có tham chiếu số hiệu của issue.
Issue khác của oxidecomputer/dendrite
-
Độ khó 4/5 3-5 ngày Mức phù hợp với người mới 35/100
oxidecomputer/dendrite#384 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 65/100
oxidecomputer/dendrite#375 ·
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 5/5 Hơn một tuần Mức phù hợp với người mới 35/100
oxidecomputer/dendrite#369 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 3/5 1-2 ngày Mức phù hợp với người mới 58/100
oxidecomputer/dendrite#368 ·
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 4/5 3-5 ngày Mức phù hợp với người mới 52/100
oxidecomputer/dendrite#359 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày
Tất cả issue của oxidecomputer/dendrite
Issue tương tự
-
bug CLI exec tool-calls
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 85/100
Maintainer thường phản hồi trong vòng 1 ngày
-
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 75/100
-
maintainer-needed p2 triaged ui windows
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 74/100
Maintainer thường phản hồi trong vòng 1 ngày
-
ai_p2
Độ khó 2/5 1-3 giờ Mức phù hợp với người mới 76/100
ClickHouse/ClickHouse#123351 ·
Maintainer thường phản hồi trong vòng 1 ngày
-
documentation
Độ khó 1/5 Dưới một giờ Mức phù hợp với người mới 92/100
github/copilot-sdk#2804 · 1 bình luận ·
Maintainer thường phản hồi trong vòng 1 ngày