Bug 8220 - fixing ACE entry in VPP renderer
[groupbasedpolicy.git] / renderers / vpp / src / main / java / org / opendaylight / groupbasedpolicy / renderer / vpp / policy / acl / AccessListUtil.java
index ea917662f60ecd00280a6d21981be6113b02b2b2..6e15411df4d84ce5a26d0f3438cd50abf50ee943 100644 (file)
@@ -326,10 +326,10 @@ public class AccessListUtil {
                     SubnetAugmentRenderer subnetAug = rnd.getAugmentation(SubnetAugmentRenderer.class);
                     // subnetAug should not be null
                     subnetAug.getSubnet();
-                    if (policyDirection.equals(ACE_DIRECTION.INGRESS)) {
+                    if (policyDirection.equals(ACE_DIRECTION.INGRESS) && subnetAug.getSubnet().isIsTenant()) {
                         aclRuleBuilders.add(denyIngressTrafficForPrefix(subnetAug.getSubnet()));
                     }
-                    else {
+                    else if(subnetAug.getSubnet().isIsTenant()) {
                         aclRuleBuilders.add(denyEgressTrafficForPrefix(subnetAug.getSubnet()));
                     }
                 });