This is describing the "how" and not the "what". The what, if I read between the lines, is that you'd like to be able to use security groups on OVS without the need for a Linuxbridge. The reasons for this include performance and easier debugging.
Regardless, this is a good thing, and I believe we should move forward with this. I expect once we get to the Neutron patches and devref we'll hit the "connection tracking support isn't in a release OVS verison yet" issue, but lets deal with it there.
This is describing the "how" and not the "what". The what, if I read between the lines, is that you'd like to be able to use security groups on OVS without the need for a Linuxbridge. The reasons for this include performance and easier debugging.
Regardless, this is a good thing, and I believe we should move forward with this. I expect once we get to the Neutron patches and devref we'll hit the "connection tracking support isn't in a release OVS verison yet" issue, but lets deal with it there.