OpenShift Container Platform offers two supported choices, OpenShift SDN and OVN-Kubernetes, for the default Container Network Interface (CNI) network provider. The following table summarizes the current feature support for both network providers:
Table 1. Default CNI network provider feature comparison
Feature |
OpenShift SDN |
OVN-Kubernetes [1] |
Egress IPs |
Supported |
Not supported |
Egress firewall [2] |
Supported |
Not supported |
Egress router |
Supported |
Not supported |
Kubernetes network policy |
Partially supported [3] |
Supported |
Multicast |
Supported |
Supported |
-
Available only as a Technology Preview feature in OpenShift Container Platform 4.4.
-
Egress firewall is also known as egress network policy in OpenShift SDN. This is not the same as network policy egress.
-
Does not support egress rules and some ipBlock
rules.