Support allowed address pairs for Dragonflow
Allowed address pairs feature allows one to add additional ip/mac address pairs on a port to allow traffic that matches those specified values. In current implement, security module like port security and security group will restrict packets sent/received from a VM port must have the fixed ip/mac address of this VM port. Besides, L2 and L3 transmission will forward packets only according those fixed addresses. Those module should make some changes to support allowed address pairs.
Whiteboard
Gerrit topic: https:/
Spec provided here: https:/
Add allowed address pairs spec
Spec provided here: https:/
Modify allowed address pairs spec file
Gerrit topic: https:/
Addressed by: https:/
add active detection app for allowed address pairs
Addressed by: https:/
Moved config options of metadata_
Gerrit topic: https:/
Addressed by: https:/
SGApp support allowed address pairs
Addressed by: https:/
add L2 app process when active port events happened