Skip to content

Investigate NAT-free cluster communication #2

@TrueGoric

Description

@TrueGoric

Possible approaches:

  • Multus CNI
    • (-) external dependency
  • manually invoke CNI for the tunnel container
    • (?) will network policies apply?
    • (-) this might be problematic from the security perspective (highly elevated permissions would be required)
    • (-) inelegant and hacky
  • pod per peer
    • (-) doesn't scale

Challenges:

  • we need to ensure that peer CIDRs from NAT-free networks do not collide

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions