switch_in_pre_acl -> switch_out_pre_acl Signed-off-by: William Tu <u9012...@gmail.com> --- tutorial/OVN-Tutorial.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/tutorial/OVN-Tutorial.md b/tutorial/OVN-Tutorial.md index 2e6a08d..1188faa 100644 --- a/tutorial/OVN-Tutorial.md +++ b/tutorial/OVN-Tutorial.md @@ -675,7 +675,7 @@ tracker. This populates the connection state fields so that we can apply policy as appropriate. table=0(switch_out_pre_acl), priority= 100, match=(ip), action=(ct_next;) - table=1(switch_in_pre_acl), priority= 0, match=(1), action=(next;) + table=1(switch_out_pre_acl), priority= 0, match=(1), action=(next;) In `switch_out_acl`, we allow packets associated with existing connections. We drop packets that are deemed to be invalid (such as non-SYN TCP packet not -- 2.5.0 _______________________________________________ dev mailing list dev@openvswitch.org http://openvswitch.org/mailman/listinfo/dev