[Openstack] [Openstack-operators] nova-network NAT question

Andiabes andi.abes at gmail.com
Fri Aug 31 22:08:39 UTC 2012


Nova assumes that the cloud operator will want to separate the VMs from the physical infrastructure.... So the address range on the physical nodes and VM are 'Foreign' to each other. For VMs to be able to communicate with the outside world in this environment, snat is required.
There's no real way in Essex to disable that.

Why do you want to avoid NAT?

On Aug 31, 2012, at 2:37, Igor Laskovy <igor.laskovy at gmail.com> wrote:

> Hey.
> 
> Well, what the type of network manager used?
> For example with FlatManager virtual nic can only put in the according bridge on the node and that's it. Anything you should do manually.
> 
> Igor Laskovy
> facebook.com/igor.laskovy
> Kiev, Ukraine
> 
> On Aug 30, 2012 2:24 PM, "Sergio Ariel de la Campa Saiz" <sacampa at gmv.com> wrote:
> Hi:
> 
>  
> 
> I have a doubt about nova-network and NAT:  
> 
> UVirtual machines (that only have privates IPs and no floating IP) always use NAT to communicate with machines out of OpenStack cloud?
> 
>  
> 
> Regards…  
> 
>  
> 
> <image008.png>
> 
> <image003.gif>
> 
> Sergio Ariel de la Campa Saiz
> Ingeniero de Infraestructuras /
> 
> Infrastucture Engineer /
> 
> GMV 
> Isaac Newton, 11
> P.T.M. Tres Cantos
> E-28760 Madrid
> Tel. +34 91 807 21 00
> Fax +34 91 807 21 99 
> www.gmv.com
> 
> <image004.gif>
> 
>  
> 
> <image005.gif>
> 
>  
> 
> <image006.gif>
> 
>  
> 
> <image007.gif>
> 
> 
> 
>  
> 
>  
> 
> 
> P Please consider the environment before printing this e-mail.
> 
> This message including any attachments may contain confidential information, according to our Information Security Management System, and intended solely for a specific individual to whom they are addressed. Any unauthorised copy, disclosure or distribution of this message is strictly forbidden. If you have received this transmission in error, please notify the sender immediately and delete it.
> Este mensaje, y en su caso, cualquier fichero anexo al mismo, puede contener información clasificada por su emisor como confidencial en el marco de su Sistema de Gestión de Seguridad de la Información siendo para uso exclusivo del destinatario, quedando prohibida su divulgación copia o distribución a terceros sin la autorización expresa del remitente. Si Vd. ha recibido este mensaje erróneamente, se ruega lo notifique al remitente y proceda a su borrado. Gracias por su colaboración.
> Esta mensagem, incluindo qualquer ficheiro anexo, pode conter informação confidencial, de acordo com nosso Sistema de Gestão de Segurança da Informação, sendo para uso exclusivo do destinatário e estando proibida a sua divulgação, cópia ou distribuição a terceiros sem autorização expressa do remetente da mesma. Se recebeu esta mensagem por engano, por favor avise de imediato o remetente e apague-a. Obrigado pela sua colaboração.
> 
> _______________________________________________
> OpenStack-operators mailing list
> OpenStack-operators at lists.openstack.org
> http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-operators
> 
> _______________________________________________
> OpenStack-operators mailing list
> OpenStack-operators at lists.openstack.org
> http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-operators
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20120831/fc9fc327/attachment.html>


More information about the Openstack mailing list