Skip to content

Commit 39c91c7

Browse files
narutoqqzhoujian05gemini-code-assist[bot]
authored andcommitted
Update the kubeovn_deny_all security group after the virtual machine … (#5831)
* Update the kubeovn_deny_all security group after the virtual machine is unbound from all security groups Signed-off-by: zhoujian05 <[email protected]> * Update pkg/controller/security_group.go Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com> Signed-off-by: zhoujian05 <[email protected]> --------- Signed-off-by: zhoujian05 <[email protected]> Co-authored-by: zhoujian05 <[email protected]> Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com> (cherry picked from commit 638d31d)
1 parent 13ce09f commit 39c91c7

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

pkg/controller/security_group.go

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -369,6 +369,9 @@ func (c *Controller) syncSgLogicalPort(key string) error {
369369
if err != nil {
370370
if k8serrors.IsNotFound(err) {
371371
klog.Warningf("no security group %s", key)
372+
// The security group is gone, trigger an update of the deny-all security group
373+
// to re-evaluate which ports should be included.
374+
c.addOrUpdateSgQueue.Add(util.DenyAllSecurityGroup)
372375
return nil
373376
}
374377
klog.Errorf("failed to get security group %s: %v", key, err)

0 commit comments

Comments
 (0)