Thanks, Justin. When you have a chance, I'd like to see what you expect the
ovs-ofctl interface to look like for conntrack'd flows. In the future, when
conntrack becomes available in an OVS release, I'm interested in
implementing conntrack enabled firewalls for OpenStack Neutron.

Amir


On Wed, May 14, 2014 at 11:00 AM, Justin Pettit <[email protected]> wrote:

> Thanks to those who attended my "Open vSwitch and the Intelligent Edge"
> presentation at the OpenStack Summit yesterday.  From my understanding, the
> video should be available on YouTube within the next couple days.  I've
> uploaded the slides and put a link on the Documentation page at
> openvswitch.org, but here's a direct link:
>
>     http://openvswitch.org/slides/OpenStack-140513.pdf
>
> In this talk, I describe advanced operations that can be achieved due to
> OVS's location at the edge of the network. With its unique position, it has
> greater context and the ability to enforce policies early. I describe the
> effects on networking and security, and dive into specific examples that
> can be best handled with an intelligent edge.  Topics include:
>
>   - Guest introspection
>   - Inferring state from the edge
>   - Implementing efficient security policies
>   - Elephant flow detection and handling
>
> I hope you find it interesting.
>
> --Justin
>
>
>
> _______________________________________________
> discuss mailing list
> [email protected]
> http://openvswitch.org/mailman/listinfo/discuss
>
_______________________________________________
discuss mailing list
[email protected]
http://openvswitch.org/mailman/listinfo/discuss

Reply via email to