Skip to content

Fix ESG IP Ext Subnet Sel support for IPv6#377

Merged
juchowan merged 1 commit intonetascode:mainfrom
jmiguelhp:i1028
Apr 16, 2026
Merged

Fix ESG IP Ext Subnet Sel support for IPv6#377
juchowan merged 1 commit intonetascode:mainfrom
jmiguelhp:i1028

Conversation

@jmiguelhp
Copy link
Copy Markdown
Contributor

@jmiguelhp jmiguelhp commented Mar 26, 2026

Potential solution for this Issue 375

In Terraform NAC, we do not put restriction to vars when IPv4 and IPv6 are supported. nac-validate tool takes care of these syntactic checks, instead.

Validation:

> terraform plan 2>&1 | grep -A 10 fvExternalSubnetSelector
  # module.aci.module.aci_endpoint_security_group["i375terraform/OCP-L3OUT-ANP/OCP-FLOATING-L3OUT-ESG"].aci_rest_managed.fvExternalSubnetSelector["2001:420:207f:f858::0/64"] will be created
  + resource "aci_rest_managed" "fvExternalSubnetSelector" {
      + annotation  = "orchestrator:terraform"
      + class_name  = "fvExternalSubnetSelector"
      + content     = {
          + "descr"  = "OCP-FLOATING-L3OUT External Subnet Selector"
          + "shared" = "no"
        }
      + dn          = "uni/tn-i375terraform/ap-OCP-L3OUT-ANP/esg-OCP-FLOATING-L3OUT-ESG/extsubselector-[2001:420:207f:f858::0/64]"
      + escape_html = true
      + id          = (known after apply)
    }

@jmiguelhp jmiguelhp marked this pull request as ready for review March 26, 2026 21:11
@jmiguelhp jmiguelhp requested a review from ogorczow March 31, 2026 14:15
@ogorczow ogorczow requested a review from juchowan April 10, 2026 08:22
@juchowan juchowan merged commit 1fd57f1 into netascode:main Apr 16, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

terraform-aci-endpoint-security-group Does not allow support for IPv6 prefixes

3 participants