All the ceph nodes are part of the vpn network, so all of the nodes can be reached: in tailscale, each host gets an additional vpn ip and can be reached over tailscale from the individual client systems (laptops) when out of the office. Is there any documentation how to make ceph bind the the vpn ip too? Thanks, Daniel On Mon, Nov 7, 2022, 05:41 Robert Sander <r.sander@xxxxxxxxxxxxxxxxxxx> wrote: > Am 07.11.22 um 13:03 schrieb Sagittarius-A Black Hole: > > > How can I add the VPN interface to Ceph to bind to for client mount > requests? > > You cannot just terminate the VPN on one of the Ceph nodes (even when a > MON is running there) and then "mount" the Ceph cluster via VPN. > > The Ceph client always needs access to all of the public network as it > will speak to each OSD. > > Make sure that your routing is correct or apply NAT so that VPN clients > and all Ceph nodes are able to talk to each other. > > Regards > -- > Robert Sander > Heinlein Consulting GmbH > Schwedter Str. 8/9b, 10119 Berlin > > http://www.heinlein-support.de > > Tel: 030 / 405051-43 > Fax: 030 / 405051-19 > > Zwangsangaben lt. §35a GmbHG: > HRB 220009 B / Amtsgericht Berlin-Charlottenburg, > Geschäftsführer: Peer Heinlein -- Sitz: Berlin > > _______________________________________________ > ceph-users mailing list -- ceph-users@xxxxxxx > To unsubscribe send an email to ceph-users-leave@xxxxxxx > _______________________________________________ ceph-users mailing list -- ceph-users@xxxxxxx To unsubscribe send an email to ceph-users-leave@xxxxxxx