Add migration script for confd: prevent IP addresses on bridge ports

Unfortunatly the fix was entered in 25.10, but confd was not stepped
up until 25.11, so this should be for 25.10 but now it is for confd
version 1.6 (infix 25.11), as close as we can get.

this is a follwup for commit 7e37fc49a3

confd: prevent IP addresses on bridge ports

Bridge ports should not have IP addresses configured. The IP address
should be configured on the bridge interface itself, not its member ports.

Add YANG must expression to enforce this rule at configuration time.

Fixes #1122
This commit is contained in:
Mattias Walström
2026-03-25 11:12:47 +01:00
parent 349a89ba52
commit 1659ca2a05
2 changed files with 22 additions and 1 deletions
+20
View File
@@ -0,0 +1,20 @@
#!/bin/sh
# Remove ietf-ip:ipv4 and ietf-ip:ipv6 from bridge port interfaces.
# Bridge ports should not have IP addresses; the IP address should
# be configured on the bridge interface itself.
file=$1
temp=${file}.tmp
jq '
if .["ietf-interfaces:interfaces"]?.interface then
.["ietf-interfaces:interfaces"].interface |= map(
if .["infix-interfaces:bridge-port"] and .type != "infix-if-type:bridge" then
del(.["ietf-ip:ipv4"], .["ietf-ip:ipv6"])
else
.
end
)
else
.
end
' "$file" > "$temp" && mv "$temp" "$file"
+2 -1
View File
@@ -1,4 +1,5 @@
migratedir = $(pkgdatadir)/migrate/1.6
dist_migrate_DATA = 10-dhcp-client-to-ipv4.sh \
20-autoconf-to-presence.sh \
30-ospf-backbone-area-type.sh
30-ospf-backbone-area-type.sh \
40-bridge-port-remove-ip.sh