Hello.

fdb_age_threshold and fdb_removal_limit. I would like to know if we have some recommends for these options, I mean value.

Nguyen Huu Khoi

On Wed, Jul 23, 2025, 6:41 PM Nguyễn Hữu Khôi <nguyenhuukhoinw@gmail.com> wrote:
Thanks much for your reply.  You're right, we disabled port security group.

I will test and give feedback to you.

Nguyen Huu Khoi


On Wed, Jul 23, 2025 at 6:17 PM Yatin Karel <ykarel@redhat.com> wrote:
Hi Nguyen,



On Wed, Jul 23, 2025 at 4:11 PM Nguyễn Hữu Khôi <nguyenhuukhoinw@gmail.com> wrote:
I see this bug
It looks like happened with ovn/ml2 provider network.

Is there any workaround for this?

Nguyen Huu Khoi


On Wed, Jul 23, 2025 at 6:23 AM Nguyễn Hữu Khôi <nguyenhuukhoinw@gmail.com> wrote:
Hello.

My OPS Env:

Openstack version: 2025.1 Stable
OS: Ubuntu 24.04
Neutron: Ml2/OVN
Deployment Tool: Kolla Ansible

Nguyen Huu Khoi


On Tue, Jul 22, 2025 at 11:09 PM Nguyễn Hữu Khôi <nguyenhuukhoinw@gmail.com> wrote:
Hello,
I have some instances in the same vlan and compute node. They can see traffic from another instance which looks like port mirror.  I can workaround via anti affinity rules but is there any solution for this problem? On vmware we can turn off or on promiscuous  mode on the network port group.

Is port security disabled on those VM ports? If yes it's probably the https://bugs.launchpad.net/neutron/+bug/2012069

Thank you. Regards

Nguyen Huu Khoi


--
Thanks and Regards
Yatin Karel