GRE tunnel with IPSEC and CARP
Details
Details
Description
Yesterday
Yesterday
Duranzed moved T2268: Configure IPsec tunnels on Saltstack from Backlog to WIP on the User-Duranzed board.
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
Wed, Feb 25
Wed, Feb 25
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra renamed T2264: Implement CARP configuration for router-002 and router-003 from Implement CARP configurations for router-002 and router-003 to Implement CARP configuration for router-002 and router-003 .
Tue, Feb 24
Tue, Feb 24
yousra triaged T2265: Add forward A records for routers (2 and 3) and public CARP VIP as Normal priority.
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra updated the task description for T2264: Implement CARP configuration for router-002 and router-003 .
yousra triaged T2264: Implement CARP configuration for router-002 and router-003 as Normal priority.
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Mon, Feb 23
Mon, Feb 23
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Sun, Feb 22
Sun, Feb 22
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from CARP setup (IP allocation, vhid, advskew / priorité (master / backup), secret shared) to CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from CARP setup (IP allocation, vhid, advskew / priorité (master / backup)) to CARP setup (IP allocation, vhid, advskew / priorité (master / backup), secret shared).
yousra renamed T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret) from Define IP range to use with CARP to CARP setup (IP allocation, vhid, advskew / priorité (master / backup)).
Fri, Feb 20
Fri, Feb 20
Thu, Feb 19
Thu, Feb 19
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
dereckson added a comment to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
19:21 < Yousra> Dereckson router-003: IP= 178.32.70.111/30, en fait .111 c'est la broadcast
Wed, Feb 18
Wed, Feb 18
yousra moved T2202: Pick solution for IPsec from Documentation to Done on the Secure HA tunnels board.
yousra added a comment to T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
A new bloc IPV4 was added in NetBox : The 172.27.27.0/28 subnet was fully allocated and currently used by VMs on Hyper-1, so I expand it to a larger prefix by combining 172.27.27.0/28 and 172.27.27.16/28 into a single 172.27.27.0/27 subnet to allow better address utilization in the future.
yousra moved T2261: Request additional public IPv4 block for CARP setup from Backlog to Done on the Secure HA tunnels board.
yousra added a comment to T2261: Request additional public IPv4 block for CARP setup.
The additional public IPv4 address has been received and is ready to be used for the CARP setup : IP=51.68.252.230/32
yousra added projects to T2261: Request additional public IPv4 block for CARP setup: Servers, Secure HA tunnels.
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
yousra updated the task description for T2203: CARP setup (IP allocation, vhid, advskew / priorité (master / backup), shared secret).
Duranzed added a comment to T2202: Pick solution for IPsec.
We chose to go with strongswan as it is native to FreeBSD and the most complete solution in terms of supported protocols. Strongswan has already been installed and tested on router-002 and router-003.