Page MenuHomeDevCentral

Secure HA tunnelsInfrastructure
ActivePublic

Watchers

  • This project does not have any watchers.
  • View All

Details

Description

GRE tunnel with IPSEC and CARP

Recent Activity

Yesterday

Duranzed moved T2201: GRE tunnel creation from Assigned to WIP on the User-Duranzed board.
Thu, Feb 26, 14:44 · User-Duranzed, Secure HA tunnels
Duranzed moved T2201: GRE tunnel creation from WIP to Assigned on the User-Duranzed board.
Thu, Feb 26, 14:44 · User-Duranzed, Secure HA tunnels
Duranzed moved T2268: Configure IPsec tunnels on Saltstack from Backlog to WIP on the User-Duranzed board.
Thu, Feb 26, 14:27 · User-Duranzed, Secure HA tunnels
Duranzed triaged T2268: Configure IPsec tunnels on Saltstack as Normal priority.
Thu, Feb 26, 14:26 · User-Duranzed, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Thu, Feb 26, 14:20 · Salt, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Thu, Feb 26, 14:16 · Salt, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Thu, Feb 26, 14:16 · Salt, Secure HA tunnels
yousra added a revision to T2264: Implement CARP configuration for router-002 and router-003 : D3979: add helper get_carp_entries() to _modules/node.py and unit tests.
Thu, Feb 26, 13:39 · Salt, Secure HA tunnels

Wed, Feb 25

dereckson triaged T2267: Create PTR records for routers as High priority.
Wed, Feb 25, 23:35 · Secure HA tunnels, Servers
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Wed, Feb 25, 09:10 · Salt, Secure HA tunnels
yousra renamed T2264: Implement CARP configuration for router-002 and router-003 from Implement CARP configurations for router-002 and router-003 to Implement CARP configuration for router-002 and router-003 .
Wed, Feb 25, 09:01 · Salt, Secure HA tunnels

Tue, Feb 24

yousra added projects to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret): Salt, Drake network.
Tue, Feb 24, 21:34 · Drake network, Salt, Secure HA tunnels
yousra closed T2265: Add forward A records for routers (2 and 3) and public CARP VIP as Resolved.
Tue, Feb 24, 21:22 · DNS, Secure HA tunnels
yousra added a revision to T2265: Add forward A records for routers (2 and 3) and public CARP VIP: D3975: Add forward A records for routers (2 and 3) and public CARP VIPin the nasqueron.org.zone.
Tue, Feb 24, 21:21 · DNS, Secure HA tunnels
yousra triaged T2265: Add forward A records for routers (2 and 3) and public CARP VIP as Normal priority.
Tue, Feb 24, 21:21 · DNS, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Tue, Feb 24, 14:32 · Salt, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Tue, Feb 24, 14:32 · Salt, Secure HA tunnels
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Tue, Feb 24, 12:54 · Salt, Secure HA tunnels
yousra triaged T2264: Implement CARP configuration for router-002 and router-003 as Normal priority.
Tue, Feb 24, 12:49 · Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Tue, Feb 24, 10:26 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Tue, Feb 24, 10:26 · Drake network, Salt, Secure HA tunnels

Mon, Feb 23

yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Mon, Feb 23, 20:49 · Drake network, Salt, Secure HA tunnels

Sun, Feb 22

yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 23:19 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 23:06 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 23:05 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 22:07 · Drake network, Salt, Secure HA tunnels
yousra added a revision to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret): D3974: Synchronize nodes.sls with NetBox pillar.
Sun, Feb 22, 20:11 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 20:10 · Drake network, Salt, Secure HA tunnels
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from CARP setup (IP allocation, vhid, advskew / priorité (master / backup), secret shared) to CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22, 13:42 · Drake network, Salt, Secure HA tunnels
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from CARP setup (IP allocation, vhid, advskew / priorité (master / backup)) to CARP setup (IP allocation, vhid, advskew / priorité (master / backup), secret shared).
Sun, Feb 22, 13:40 · Drake network, Salt, Secure HA tunnels
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from Define IP range to use with CARP to CARP setup (IP allocation, vhid, advskew / priorité (master / backup)).
Sun, Feb 22, 13:25 · Drake network, Salt, Secure HA tunnels

Fri, Feb 20

Duranzed moved T2202: Pick solution for IPsec from Backlog to Finished on the User-Duranzed board.
Fri, Feb 20, 13:51 · User-Duranzed, documentation, Product evaluation, Secure HA tunnels
Duranzed added a project to T2202: Pick solution for IPsec: User-Duranzed.
Fri, Feb 20, 13:48 · User-Duranzed, documentation, Product evaluation, Secure HA tunnels
Duranzed moved T2201: GRE tunnel creation from Backlog to WIP on the User-Duranzed board.
Fri, Feb 20, 13:47 · User-Duranzed, Secure HA tunnels
Duranzed added a project to T2201: GRE tunnel creation : User-Duranzed.
Fri, Feb 20, 13:47 · User-Duranzed, Secure HA tunnels

Thu, Feb 19

yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Thu, Feb 19, 13:19 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Thu, Feb 19, 12:31 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Thu, Feb 19, 12:22 · Drake network, Salt, Secure HA tunnels
dereckson added a comment to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).

19:21 < Yousra> Dereckson router-003: IP= 178.32.70.111/30, en fait .111 c'est la broadcast

Thu, Feb 19, 00:56 · Drake network, Salt, Secure HA tunnels

Wed, Feb 18

yousra moved T2202: Pick solution for IPsec from Documentation to Done on the Secure HA tunnels board.
Wed, Feb 18, 20:25 · User-Duranzed, documentation, Product evaluation, Secure HA tunnels
yousra added a comment to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).

A new bloc IPV4 was added in NetBox : The 172.27.27.0/28 subnet was fully allocated and currently used by VMs on Hyper-1, so I expand it to a larger prefix by combining 172.27.27.0/28 and 172.27.27.16/28 into a single 172.27.27.0/27 subnet to allow better address utilization in the future.

Wed, Feb 18, 14:40 · Drake network, Salt, Secure HA tunnels
yousra moved T2261: Request additional public IPv4 block for CARP setup from Backlog to Done on the Secure HA tunnels board.
Wed, Feb 18, 13:47 · Secure HA tunnels, Servers
yousra closed T2261: Request additional public IPv4 block for CARP setup as Resolved.
Wed, Feb 18, 13:46 · Secure HA tunnels, Servers
yousra added a comment to T2261: Request additional public IPv4 block for CARP setup.

The additional public IPv4 address has been received and is ready to be used for the CARP setup : IP=51.68.252.230/32

Wed, Feb 18, 13:46 · Secure HA tunnels, Servers
yousra added projects to T2261: Request additional public IPv4 block for CARP setup: Servers, Secure HA tunnels.
Wed, Feb 18, 13:44 · Secure HA tunnels, Servers
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Wed, Feb 18, 13:40 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Wed, Feb 18, 13:06 · Drake network, Salt, Secure HA tunnels
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Wed, Feb 18, 13:02 · Drake network, Salt, Secure HA tunnels
Duranzed closed T2202: Pick solution for IPsec as Resolved.
Wed, Feb 18, 12:46 · User-Duranzed, documentation, Product evaluation, Secure HA tunnels
Duranzed added a comment to T2202: Pick solution for IPsec.

We chose to go with strongswan as it is native to FreeBSD and the most complete solution in terms of supported protocols. Strongswan has already been installed and tested on router-002 and router-003.

Wed, Feb 18, 12:46 · User-Duranzed, documentation, Product evaluation, Secure HA tunnels