Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Tilak Waelde
Hope this helps. Happy to share my LXD configurations with anyone... -Ron Please do! I'd really love to see a description of a production lxd / lxc setup with proper networking and multiple hosts! I haven't played around with it yet, but is it possible to include some sort of VRF-lite[0]

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Sergiusz Pawlowicz
On Sun, Sep 18, 2016 at 7:11 PM, Tomasz Chmielewski wrote: > On 2016-09-18 21:05, Sergiusz Pawlowicz wrote: >> >> On Sun, Sep 18, 2016 at 4:16 PM, Tomasz Chmielewski >> wrote: >> >>> While I can imagine setting up many OpenVPN tunnels between all LXD >>> servers

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Ron Kelley
So, just for clarity, you are saying each LXD server will have no separate network connection for the containers. Thus, all containers are private to the LXD server, and any outbound traffic must traverse the container server interface. Is this correct? If so, sorry, I must have missed this

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Tomasz Chmielewski
On 2016-09-18 22:14, Ron Kelley wrote: (Long reply follows…) Personally, I think you need to look at the big picture for such deployments. From what I read below, you are asking, “how do I extend my layer-2 subnets between data centers such that container1 in Europe can talk with container6 in

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Ron Kelley
(Long reply follows…) Personally, I think you need to look at the big picture for such deployments. From what I read below, you are asking, “how do I extend my layer-2 subnets between data centers such that container1 in Europe can talk with container6 in Asia, etc”. If this is true, I think

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Tomasz Chmielewski
On 2016-09-18 21:05, Sergiusz Pawlowicz wrote: On Sun, Sep 18, 2016 at 4:16 PM, Tomasz Chmielewski wrote: While I can imagine setting up many OpenVPN tunnels between all LXD servers I cannot imagine that :-) :-) Use tinc, mate. Your life begins :-)

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Sergiusz Pawlowicz
On Sun, Sep 18, 2016 at 4:16 PM, Tomasz Chmielewski wrote: > While I can imagine setting up many OpenVPN tunnels between all LXD servers I cannot imagine that :-) :-) Use tinc, mate. Your life begins :-) https://www.tinc-vpn.org/ cheers, Serge

Re: [lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Micky Del Favero
Tomasz Chmielewski writes: > While I can imagine setting up many OpenVPN tunnels between all LXD > servers (LXD1-LXD2, LXD1-LXD3, LXD2-LXD3) and constantly adjusting the > routes as containers are stopped/started/migrated, it's a bit of a > management nightmare. And even more so

[lxc-users] LAN for LXD containers (with multiple LXD servers)?

2016-09-18 Thread Tomasz Chmielewski
It's easy to create a "LAN" for LXD containers on a single LXD server - just attach them to the same bridge, use the same subnet (i.e. 10.10.10.0/24) - done. Containers can communicate with each other using their private IP address. However, with more then one LXD server *not* in the same LAN