<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    Hi Hyunsun,<br>
    <br>
    Thank you for your help!!<br>
    My questions has been solved.<br>
    <br>
    <div class="moz-cite-prefix">On 2018/03/05 16:42, Hyunsun Moon
      wrote:<br>
    </div>
    <blockquote type="cite"
      cite="mid:A0BBCAD0-86BD-42C7-AD68-10C565721EAE@gmail.com">
      <pre wrap="">Hi Yoshihiko,

If you have physical LB in your environment, you might want to make use of NodePort for distributing the access to multiple controller nodes. In that case, it is recommended to set Values.network.external_policy_local to true so that you could eliminate unnecessary hops.
Ingress backed by nginx could be used of course, but as you pointed, IP address of the node where ingress pod resides will be the address you’re accessing, which might not be desirable in many use cases.
If you plan to try it on GCP/GKE, where the ingress controller is backed by GCP’s load-balancer service, NodePort + ingress seems valid option for exposing your service to external.
FYI, <a class="moz-txt-link-freetext" href="https://cloud.google.com/kubernetes-engine/docs/tutorials/http-balancer">https://cloud.google.com/kubernetes-engine/docs/tutorials/http-balancer</a> <a class="moz-txt-link-rfc2396E" href="https://cloud.google.com/kubernetes-engine/docs/tutorials/http-balancer"><https://cloud.google.com/kubernetes-engine/docs/tutorials/http-balancer></a>

Hope this helps.

Hyunsun


</pre>
      <blockquote type="cite">
        <pre wrap="">On 5 Mar 2018, at 2:34 PM, 渥美 慶彦 <a class="moz-txt-link-rfc2396E" href="mailto:atsumi.yoshihiko@po.ntt-tx.co.jp"><atsumi.yoshihiko@po.ntt-tx.co.jp></a> wrote:

Hi all,
# Resend with openstack-helm tag

I try to deploy multinode OpenStack by openstack-helm
and want to access OpenStack API endpoints from out of k8s nodes.
To avoid service failure by node down, I think I need one virtual IP for the endpoints.(like Pacemaker)
Could you show me how to realize that if you have any information?

A. Deploy OpenStack services for NodePort, and distribute the access to nodes using physical Load Balancer.
B. Using Ingress?
  I think Ingress is for L7 routing, so it can't be used to create VIP for the endpoints.
C. Any other ideas?

And when I try this on GCP/GKE, is there any difference from on-premises?

best regards

-- 
--------------------------------------------------------
Yoshihiko Atsumi
E-mail:<a class="moz-txt-link-abbreviated" href="mailto:atsumi.yoshihiko@po.ntt-tx.co.jp">atsumi.yoshihiko@po.ntt-tx.co.jp</a>
--------------------------------------------------------



__________________________________________________________________________
OpenStack Development Mailing List (not for usage questions)
Unsubscribe: <a class="moz-txt-link-abbreviated" href="mailto:OpenStack-dev-request@lists.openstack.org?subject:unsubscribe">OpenStack-dev-request@lists.openstack.org?subject:unsubscribe</a>
<a class="moz-txt-link-freetext" href="http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev">http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev</a>
</pre>
      </blockquote>
      <pre wrap="">

</pre>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">__________________________________________________________________________
OpenStack Development Mailing List (not for usage questions)
Unsubscribe: <a class="moz-txt-link-abbreviated" href="mailto:OpenStack-dev-request@lists.openstack.org?subject:unsubscribe">OpenStack-dev-request@lists.openstack.org?subject:unsubscribe</a>
<a class="moz-txt-link-freetext" href="http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev">http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev</a>
</pre>
    </blockquote>
    <br>
    <pre class="moz-signature" cols="72">-- 
--------------------------------------------------------
Yoshihiko Atsumi
E-mail:<a class="moz-txt-link-abbreviated" href="mailto:atsumi.yoshihiko@po.ntt-tx.co.jp">atsumi.yoshihiko@po.ntt-tx.co.jp</a>
--------------------------------------------------------</pre>
  </body>
</html>