浏览代码

Merge pull request #1350 from aboch/ipsec

On network creation, reset mangle rule
Madhu Venugopal 9 年之前
父节点
当前提交
cd8a75e237
共有 1 个文件被更改,包括 7 次插入0 次删除
  1. 7 0
      libnetwork/drivers/overlay/ov_network.go

+ 7 - 0
libnetwork/drivers/overlay/ov_network.go

@@ -150,6 +150,13 @@ func (d *driver) CreateNetwork(id string, option map[string]interface{}, nInfo d
 		return fmt.Errorf("failed to update data store for network %v: %v", n.id, err)
 	}
 
+	// Make sure no rule is on the way from any stale secure network
+	if !n.secure {
+		for _, vni := range vnis {
+			programMangle(vni, false)
+		}
+	}
+
 	if nInfo != nil {
 		if err := nInfo.TableEventRegister(ovPeerTable); err != nil {
 			return err