Access nodes, pods and services over Ipsec VPN tunnel

322 views
Skip to first unread message

Anton Vasanthakumar

unread,
Jul 9, 2018, 3:18:15 AM7/9/18
to Kubernetes user discussion and Q&A
Hi,

I'm new to google cloud platform.

I'm having a problem to access nodes, pods and services over Ipsec VPN tunnel.

What's the best solution to access nodes, pods and services from on-promises.

Thanks
Anton 

Tim Hockin

unread,
Jul 9, 2018, 12:06:20 PM7/9/18
to Kubernetes user discussion and Q&A
Nodes and pods will work over VPN, as long as you configure the routes in the VPN to cover the pod and the node IP space.

Services are an in-cluster concept.  If you want to publish a service, you can set its type to "LoadBalancer" and set the `cloud.google.com/load-balancer-type: "Internal"` annotation.  That will make an ILB instance that points to your Service.


This message may contain information from Paymentsense Ltd which is confidential or privileged. If you are not the intended recipient, please advise the sender immediately by reply email and delete this message and any attachments without retaining a copy. Any views expressed in this message are those of the individual sender, except where the sender specifies and with authority.


--
You received this message because you are subscribed to the Google Groups "Kubernetes user discussion and Q&A" group.
To unsubscribe from this group and stop receiving emails from it, send an email to kubernetes-use...@googlegroups.com.
To post to this group, send email to kubernet...@googlegroups.com.
Visit this group at https://groups.google.com/group/kubernetes-users.
For more options, visit https://groups.google.com/d/optout.

Anton Vasanthakumar

unread,
Jul 10, 2018, 3:54:43 AM7/10/18
to Kubernetes user discussion and Q&A
Hi Tom,

Thanks for your reply.

Nodes work fine over VPN tunnel as I customized the network in the gcp and pods got the IP address assigned from 10.0.0.0/8 network , but our service in the datacenter got IP address from same range. So, I'm not able to access them as pods ip address are not masquerading to node's IP.

Thanks
Anton
Reply all
Reply to author
Forward
0 new messages