Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-6817

FIWARE.Request.Lab.Communication between datacenters using private ips.

    Details

    • Type: extRequest
    • Status: Closed
    • Priority: Major
    • Resolution: Done
    • Fix Version/s: 2021
    • Component/s: FIWARE-LAB-HELP
    • Labels:
      None

      Description

      Hi,

      I want to use MongoDB with replicasets in Europe and in Mexico on Fiware.
      There is no advantage to use public ips in terms of security. The best is
      to communicate with the private ips between data centers if possible. The
      private ips ranges are not the same between Switzerland and Mexico. Is
      there a way to do that on Fiware ecosystem ?

      Such system exists at OVH https://www.ovh.com/us/solutions/vrack/ and this
      is very useful.

      Thanks for your help.

      Best regards

      Gauthier

      PS : Login : hello@filaments.directory
      Gauthier de Valensart

      Silicon to Web SPRL
      Parvis Saint Henri, 28
      1200 Brussels Belgium
      Mobile : +32 2 318 84 55
      Website : www.si2w.be <http://www.si2w.be>
      VAT : BE0829739483

      Since January 1st, old domains won't be supported and messages sent to any domain different to @lists.fiware.org will be lost.
      Please, send your messages using the new domain (Fiware-lab-help@lists.fiware.org) instead of the old one.
      _______________________________________________
      Fiware-lab-help mailing list
      Fiware-lab-help@lists.fiware.org
      https://lists.fiware.org/listinfo/fiware-lab-help
      [Created via e-mail received from: Gauthier de Valensart <gaudeval@si2w.be>]

        Activity

        Hide
        danieles Daniele Santoro added a comment -

        Dear,

        As far as I know this is not possible in FIWARE Lab, but let me forward the issue to the Zurich node support team. For sure they can confirm or discard my reply.

        Best,
        Daniele

        Show
        danieles Daniele Santoro added a comment - Dear, As far as I know this is not possible in FIWARE Lab, but let me forward the issue to the Zurich node support team. For sure they can confirm or discard my reply. Best, Daniele
        Hide
        ZHAW Node Helpdesk Zurich Node Helpdesk added a comment -

        The issue has been emailed:

        • Time sent: 24/Jun/16 11:06 AM
        • To: gaudeval@si2w.be
        • with subject: *(HELP-6817) [Fiware-lab-help] Communication between datacenters using private ips *

        Hi Gauthier,

        We do not have a FIWARE wide solution for this unfortunately.

        In our lab, we have been working on inter-DC connectivity solutions
        in which VMs can be deployed to support such use cases, although
        these are still a bit experimental.

        The solution is based on having openVPN connectivity between
        two networks - there is a bit of complexity involved in adding extra
        routes to the openstack routers. Of course this solution requires
        public IPs for the endpoints of the openVPN connection.

        Another solution could be to use public IPs but to put v strict limitations
        on who can connect to specific ports using the security groups eg only
        allow the public ip from mexico to connect to the mongo port on the zurich vm.

        Happy to discuss further if the above solutions could be workable.

        BR,
        Seán.

        Show
        ZHAW Node Helpdesk Zurich Node Helpdesk added a comment - The issue has been emailed: Time sent: 24/Jun/16 11:06 AM To: gaudeval@si2w.be with subject: *( HELP-6817 ) [Fiware-lab-help] Communication between datacenters using private ips * Hi Gauthier, We do not have a FIWARE wide solution for this unfortunately. In our lab, we have been working on inter-DC connectivity solutions in which VMs can be deployed to support such use cases, although these are still a bit experimental. The solution is based on having openVPN connectivity between two networks - there is a bit of complexity involved in adding extra routes to the openstack routers. Of course this solution requires public IPs for the endpoints of the openVPN connection. Another solution could be to use public IPs but to put v strict limitations on who can connect to specific ports using the security groups eg only allow the public ip from mexico to connect to the mongo port on the zurich vm. Happy to discuss further if the above solutions could be workable. BR, Seán.

          People

          • Assignee:
            ZHAW Node Helpdesk Zurich Node Helpdesk
            Reporter:
            fw.ext.user FW External User
          • Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: