Skip to content

[action] [PR:18766] [DualToR] enforce same loopback ip and drop bgp pkts on loopback1 for dualtor#18913

Closed
mssonicbld wants to merge 1 commit intosonic-net:202411from
mssonicbld:cherry/202411/18766
Closed

[action] [PR:18766] [DualToR] enforce same loopback ip and drop bgp pkts on loopback1 for dualtor#18913
mssonicbld wants to merge 1 commit intosonic-net:202411from
mssonicbld:cherry/202411/18766

Conversation

@mssonicbld
Copy link
Collaborator

Description of PR

Summary:
Fixes # (issue)
https://msazure.visualstudio.com/One/_workitems/edit/32910131/

Type of change

  • Bug fix
  • Testbed and Framework(new/improvement)
  • New Test case
  • Skipped for non-supported platforms
  • Test case improvement

Back port request

  • 202205
  • 202305
  • 202311
  • 202405
  • 202411
  • 202505

Approach

What is the motivation for this PR?

This PR updates the DualToR config to enforce the same loopback1 IP address for both ToRs.
Based on a recent Incident 628608070 : [SONiC RCA][SLB_DNC] Gemini Tors dropping vip traffic, we need to block BGP from being established on loopback1.

How did you do it?

Assign the same loopback1 IP to both ToRs.
Added an iptables rules to drop the packets sonic-net/sonic-host-services#262

How did you verify/test it?

Confirmed both ToRs used the same loopback1 IP, and verify the drop rule.

Any platform specific information?

Supported testbed topology if it's a new test case?

Documentation

… dualtor (sonic-net#18766)

What is the motivation for this PR?
This PR updates the DualToR config to enforce the same loopback1 IP address for both ToRs.
Based on a recent Incident 628608070 : [SONiC RCA][SLB_DNC] Gemini Tors dropping vip traffic, we need to block BGP from being established on loopback1.

How did you do it?
Assign the same loopback1 IP to both ToRs.
Added an iptables rules to drop the packets sonic-net/sonic-host-services#262

How did you verify/test it?
Confirmed both ToRs used the same loopback1 IP, and verify the drop rule.
@mssonicbld
Copy link
Collaborator Author

Original PR: #18766

@mssonicbld
Copy link
Collaborator Author

/azp run

@azure-pipelines
Copy link

Azure Pipelines successfully started running 1 pipeline(s).

@yyynini yyynini closed this Jun 18, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants