scalr 5.1 vpc router missed

120 views
Skip to first unread message

adrian.fuent...@innovation4security.com

unread,
Feb 2, 2015, 3:10:15 AM2/2/15
to scalr-...@googlegroups.com
Hi all,

This is my environment:

* 5.1 OpenSource Scalr
* Scalr 5.1 deployed in a Amazon VPC
* Roles imported as: php sync_shared_roles.php

I am able to launch any ec2 properly in my vpc but I can't find the way to create new vpcs in Amazon. In fact, I am not able to find "VPC router" as role as it is described in http://www.scalr.com/blog/announcing-custom-vpc-support

Can anyone help me?

Thank you in advance.

Thomas Orozco

unread,
Feb 3, 2015, 3:53:03 AM2/3/15
to scalr-...@googlegroups.com
Hi,

I'm not sure what exactly your issue is here. Are you:
- Unable to create a VPC?
- Unable to find the VPC Router Role?

Note that the VPC Router Role is only available when launching in a VPC, so, if you're unable to create a VPC, it makes sense that you would not see it.

Cheers, 

adrian.fuent...@innovation4security.com

unread,
Feb 10, 2015, 4:33:51 AM2/10/15
to scalr-...@googlegroups.com
Hi Thomas,

Thank you very much for being so fast.

You were right, I hadn't selected the option for selecting in VPC.

Just one more question, is there any way to configure a route table in aws from scalr control panel? I'm trying to do all work from scalr, I mean, creating a vpc with two subnets, one public and one private, and then configuring vpc router role for accessing all instances I want to create in my private subnet. Is it possible to do it all this work from scalr or should I create all the network intraestructure firstly from aws console?


and I think that the only way is to configure all route tables from aws console. Just to be sure.

Thank you in advance.

Thomas Orozco

unread,
Feb 10, 2015, 4:39:28 AM2/10/15
to scalr-...@googlegroups.com
Hi,

Since creating and configuring a VPC is a one-time thing, we do our users do so from the AWS console (there is limited value in having Scalr reproduce this functionality).

Hope this makes sense,

Cheers,

Adrián Fuentes

unread,
Feb 10, 2015, 4:42:22 AM2/10/15
to scalr-...@googlegroups.com
It makes sense!

Thank you again!

--
You received this message because you are subscribed to a topic in the Google Groups "scalr-discuss" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/scalr-discuss/NQHb-4b-1iw/unsubscribe.
To unsubscribe from this group and all its topics, send an email to scalr-discus...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.



--
Adrian Fuentes

Adrián Fuentes

unread,
Feb 10, 2015, 11:41:47 AM2/10/15
to scalr-...@googlegroups.com
Hi Thomas,

I've been working with Scalr today and I have a couple of questions more related to VPCs, I hope you don't mind.

* The easy one: Is there any way to config aws-tags in a VCP router role from control panel? There are just a couple of options to configure, so I suppose it is not possible from there.
 
* The difficult one ;)  I have seen in documentation that if you want to deploy a farm in the same VPC as Scalr, it is neccesary to configure some settings in the config:  https://scalr-wiki.atlassian.net/wiki/display/docs/Using+VPC+-+Internal+Scalr+Deployment

Well, what if I would like to launch farms in both, I mean, in my own VPC and in a external VPC? Should I configure as well a VPC router role in my own VPC? From control pannel it is impossible to launch a farm in a private subnet without configure a vpc role (parameter "scalr.instances_connection_policy = auto (or public)") and if I change this parameter to local it works, but it is impossible to launch farms in external VPCs. what should I do?

Thank you in advance.


--
Adrian Fuentes

Thomas Orozco

unread,
Feb 12, 2015, 4:54:17 AM2/12/15
to scalr-...@googlegroups.com
Hey Adrian,​

I think you might be able to use Tagging Governance to add tags to the VPC Router Role. Currently, I don't think there's another way to do it. This does make sense, and we might eventually add this, but it's not there right now.

---

Currently the VPC configuration you want to deploy isn't supported in Scalr. However, you might be able to  get away with making a few changes to the code. You can find the code that performs validation here:


Obviously, I can't guarantee this will work, but it might be worth a shot. Let me know! 

If that's feasible for you, you might also want to consider adding a peering connection between your VPCs (i.e. deploy Scalr in one "management VPC", and peer it with your other VPCs).

Cheers,  

Adrián Fuentes

unread,
Feb 12, 2015, 5:13:41 AM2/12/15
to scalr-...@googlegroups.com
Thank you very much Thomas!

Congratulations for your great work with Scalr!

--
You received this message because you are subscribed to a topic in the Google Groups "scalr-discuss" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/scalr-discuss/NQHb-4b-1iw/unsubscribe.
To unsubscribe from this group and all its topics, send an email to scalr-discus...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.



--
Adrian Fuentes

Adrián Fuentes

unread,
Feb 13, 2015, 3:44:16 AM2/13/15
to scalr-...@googlegroups.com
Hi Thomas,

I have more questions related to VPC. Is there any way that Scalr will not terminate the instance if it doesn't have connection with it?

I have a problem and maybe you can help me. Is there any way for communication with scalr server goes just in the following  sense Instance -> Scalr server. My problem is that I don't have access to security groups rules in private subnets. I suppose that scalr is not thought to work this way but you maybe have any solution for this.

Thank you again.

Cheers!
--
Adrian Fuentes

Thomas Orozco

unread,
Feb 16, 2015, 11:43:29 AM2/16/15
to scalr-...@googlegroups.com
Hey Adrian,

This is unfortunately not possible (Scalr needs access to the instances it should manage). We have plans to make this more flexible in the future (but when using Scalr without access to your instances you'll have reduced functionality).

Cheers, 


On Friday, February 13, 2015 at 12:44:16 AM UTC-8, Adrián Fuentes wrote:
Hi Thomas,

I have more questions related to VPC. Is there any way that Scalr will not terminate the instance if it doesn't have connection with it?

I have a problem and maybe you can help me. Is there any way for communication with scalr server goes just in the following  sense Instance -> Scalr server. My problem is that I don't have access to security groups rules in private subnets. I suppose that scalr is not thought to work this way but you maybe have any solution for this.

Thank you again.

Cheers!
2015-02-12 11:13 GMT+01:00 Adrián Fuentes <adrian.fuentes.contractor@innovation4security.com>:
Thank you very much Thomas!

Congratulations for your great work with Scalr!
2015-02-12 10:53 GMT+01:00 Thomas Orozco <tho...@scalr.com>:
Hey Adrian,​

I think you might be able to use Tagging Governance to add tags to the VPC Router Role. Currently, I don't think there's another way to do it. This does make sense, and we might eventually add this, but it's not there right now.

---

Currently the VPC configuration you want to deploy isn't supported in Scalr. However, you might be able to  get away with making a few changes to the code. You can find the code that performs validation here:


Obviously, I can't guarantee this will work, but it might be worth a shot. Let me know! 

If that's feasible for you, you might also want to consider adding a peering connection between your VPCs (i.e. deploy Scalr in one "management VPC", and peer it with your other VPCs).

Cheers,  

--
You received this message because you are subscribed to a topic in the Google Groups "scalr-discuss" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/scalr-discuss/NQHb-4b-1iw/unsubscribe.
To unsubscribe from this group and all its topics, send an email to scalr-discuss+unsubscribe@googlegroups.com.

For more options, visit https://groups.google.com/d/optout.



--
Adrian Fuentes



--
Adrian Fuentes
Reply all
Reply to author
Forward
0 new messages