Details
-
Type:
extRequest
-
Status: Closed
-
Priority:
Major
-
Resolution: Done
-
Fix Version/s: 2021
-
Component/s: FIWARE-LAB-HELP
-
Labels:None
-
Sender Email:
-
HD-Node:Zurich
Description
Hi,
I want to use MongoDB with replicasets in Europe and in Mexico on Fiware.
There is no advantage to use public ips in terms of security. The best is
to communicate with the private ips between data centers if possible. The
private ips ranges are not the same between Switzerland and Mexico. Is
there a way to do that on Fiware ecosystem ?
Such system exists at OVH https://www.ovh.com/us/solutions/vrack/ and this
is very useful.
Thanks for your help.
Best regards
Gauthier
PS : Login : hello@filaments.directory
Gauthier de Valensart
Silicon to Web SPRL
Parvis Saint Henri, 28
1200 Brussels Belgium
Mobile : +32 2 318 84 55
Website : www.si2w.be <http://www.si2w.be>
VAT : BE0829739483
Since January 1st, old domains won't be supported and messages sent to any domain different to @lists.fiware.org will be lost.
Please, send your messages using the new domain (Fiware-lab-help@lists.fiware.org) instead of the old one.
_______________________________________________
Fiware-lab-help mailing list
Fiware-lab-help@lists.fiware.org
https://lists.fiware.org/listinfo/fiware-lab-help
[Created via e-mail received from: Gauthier de Valensart <gaudeval@si2w.be>]
The issue has been emailed:
HELP-6817) [Fiware-lab-help] Communication between datacenters using private ips *Hi Gauthier,
We do not have a FIWARE wide solution for this unfortunately.
In our lab, we have been working on inter-DC connectivity solutions
in which VMs can be deployed to support such use cases, although
these are still a bit experimental.
The solution is based on having openVPN connectivity between
two networks - there is a bit of complexity involved in adding extra
routes to the openstack routers. Of course this solution requires
public IPs for the endpoints of the openVPN connection.
Another solution could be to use public IPs but to put v strict limitations
on who can connect to specific ports using the security groups eg only
allow the public ip from mexico to connect to the mongo port on the zurich vm.
Happy to discuss further if the above solutions could be workable.
BR,
Seán.