[ovs-discuss] OVS & tun interfaces / openvpn design

Benoît benoit at neviani.fr
Mon Nov 21 11:30:45 UTC 2016


On Mon, Nov 21, 2016 at 09:56:11AM +0000, OReilly Darragh wrote:
>
>OpenVPN can use tap interfaces instead of tun interfaces. These should work in an OVS bridge.

Yes it is true but the OpenVPN server I am using doesn't have this 
capability, it accepts only tun...

>> -----Original Message-----
>> From: ovs-discuss-bounces at openvswitch.org [mailto:ovs-discuss-
>> bounces at openvswitch.org] On Behalf Of Benoît
>> Sent: 20 November 2016 17:24
>> To: ovs-discuss at openvswitch.org
>> Subject: [ovs-discuss] OVS & tun interfaces / openvpn design
>>
>> Hi,
>>
>> Just to see if any of you are using OVS + OpenVPN ?
>> My linux box is running OVS managing both my KVM vnics and my physical nics
>> and I am using OpenVpn for my external internet access, this creates a tun
>> interface.
>>
>> How you guys deal with this as ovs is not L3 and there is no way to include the
>> tun interface into the vswitch as only ethernet interface are supported?
>>
>> I would like particulary to mirror the tun interface but I didn't find another
>> solution rather than using iptables tee function to send to another interface
>> inside an ovs switch but I don't like very much...
>> and it is the only workaround I found.
>>
>> Would be very interested to heard about how do you deal with this situation
>> (tun/openvpn devices + ovs) in term of design
>>
>> Many thanks!
>>
>> --
>> Benoit
>> _______________________________________________
>> discuss mailing list
>> discuss at openvswitch.org
>> https://mail.openvswitch.org/mailman/listinfo/ovs-discuss
>_______________________________________________
>discuss mailing list
>discuss at openvswitch.org
>https://mail.openvswitch.org/mailman/listinfo/ovs-discuss

-- 
Benoit


More information about the discuss mailing list