Tuesday 4 November 2014

VPNs

So we spent the last week trying to get different flavours of VPN setup. not so easy when we are getting access denied on everything in AWS, which is scuppering a lot of work.

I was attempting to get Openstack running with openswan on ubuntu, and windows 2008 r2 RRAS, and then windows 2012 RRAS in an attempt to open a vpn between envs.

Struggled to do it from openstack as I couldnt configure an internet-facing ip to allow the vpn to run.

However, i learned a lot about the different configs and options for vpns over the last week.


So heres what happened yesterday (3rd November)

We finally decided that our hybrid cloud would be AWS as our primary cloud and Azure as our secondary.

We did up a project plan outlining the tasks required to get us to our goal.

Then we went about setting up our vpn (openswan) from AWS VPC (virtual private Cloud) to Azure.

We threw the openswan environment together quickly (must have done it about 20 times now at this stage), but we never recreated the azure site-to-site connection on the virtual networks (it takes a while to create the gateway), so never got the vpn up and running last night.

Jeff recreated the azure virtual network this morning, and lo and behold, our clouds are connected!

So openswan is working for us. We'll leave it at that and maybe research some other options for the VPN, such as openvpn or Windows RRAS. However, we're going to document our work so far.

We have our document structure as well so we're going to update that now as we go.

We have a couple more tasks now to get through, like provisioning, monitoring and orchestration in both AWS and Azure, but its good to have our clouds connected.

Lets see what tomorrows tasks brings.


Richie

No comments:

Post a Comment