Google Cloud VPN access to public IP address Unicorn Meta Zoo #1: Why another podcast? Announcing the arrival of Valued Associate #679: Cesar Manara Come Celebrate our 10 Year Anniversary!Google cloud site to site VPN between VLANsStrongswan running in container to create VPN tunnel between LAN and GCE?Google Cloud VPN is not allowing outbound HTTP or SSH into Office NetworkAdd Linux VPS (cloud VPS) to Local Network using VPN or IPSecDNS Over VPN Tunnel Won't ResolveVPN IPSec between Google Cloud and Local Network - Arris ModemForward from VPN to non-VPN networkRoute Google Cloud VPN traffic in a VPC to public internet or internal IPsIntra-cloud VPN IPSec AWS - Google Cloud times out and re-connects intermittentlyGoogle Cloud VPN configuration, tunnel close automatically
A journey... into the MIND
Raising a bilingual kid. When should we introduce the majority language?
What's the difference between using dependency injection with a container and using a service locator?
Was Objective-C really a hindrance to Apple software development?
Is there a verb for listening stealthily?
Did war bonds have better investment alternatives during WWII?
Where to find documentation for `whois` command options?
Why aren't road bicycle wheels tiny?
What is the numbering system used for the DSN dishes?
Test if all elements of a Foldable are the same
Is there a possibility to generate a list dynamically in Latex?
Is there a way to fake a method response using Mock or Stubs?
Why isn't everyone flabbergasted about Bran's "gift"?
Why doesn't the university give past final exams' answers?
How to begin with a paragraph in latex
Will I lose my paid in full property
Why does Java have support for time zone offsets with seconds precision?
Simulate round-robin tournament draw
Are there existing rules/lore for MTG planeswalkers?
Preserving file and folder permissions with rsync
France's Public Holidays' Puzzle
Is Bran literally the world's memory?
What were wait-states, and why was it only an issue for PCs?
Israeli soda type drink
Google Cloud VPN access to public IP address
Unicorn Meta Zoo #1: Why another podcast?
Announcing the arrival of Valued Associate #679: Cesar Manara
Come Celebrate our 10 Year Anniversary!Google cloud site to site VPN between VLANsStrongswan running in container to create VPN tunnel between LAN and GCE?Google Cloud VPN is not allowing outbound HTTP or SSH into Office NetworkAdd Linux VPS (cloud VPS) to Local Network using VPN or IPSecDNS Over VPN Tunnel Won't ResolveVPN IPSec between Google Cloud and Local Network - Arris ModemForward from VPN to non-VPN networkRoute Google Cloud VPN traffic in a VPC to public internet or internal IPsIntra-cloud VPN IPSec AWS - Google Cloud times out and re-connects intermittentlyGoogle Cloud VPN configuration, tunnel close automatically
.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;
I have a google cloud system running on subnet 10.128.1.0/24 and a remote network on 10.173.2.2/23 with a google VPN IPSEC tunnel up and running.
I have the google remote network set to 10.173.2.2/23, and the local IP ranges 0.0.0.0/0 with the reciprocal in the remote site. The intention is to force all network traffic from the remote server through the VPN.
I am able to ping etc to the local LAN side of my google server (10.128.1.2) but I can't get to its public IP port (or any public IP).
Is there an easyish way to setup a google VPN tunnel that will route all traffic to the public IP on my servers, or the web in general?
Cheers
google-cloud-platform site-to-site-vpn
add a comment |
I have a google cloud system running on subnet 10.128.1.0/24 and a remote network on 10.173.2.2/23 with a google VPN IPSEC tunnel up and running.
I have the google remote network set to 10.173.2.2/23, and the local IP ranges 0.0.0.0/0 with the reciprocal in the remote site. The intention is to force all network traffic from the remote server through the VPN.
I am able to ping etc to the local LAN side of my google server (10.128.1.2) but I can't get to its public IP port (or any public IP).
Is there an easyish way to setup a google VPN tunnel that will route all traffic to the public IP on my servers, or the web in general?
Cheers
google-cloud-platform site-to-site-vpn
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50
add a comment |
I have a google cloud system running on subnet 10.128.1.0/24 and a remote network on 10.173.2.2/23 with a google VPN IPSEC tunnel up and running.
I have the google remote network set to 10.173.2.2/23, and the local IP ranges 0.0.0.0/0 with the reciprocal in the remote site. The intention is to force all network traffic from the remote server through the VPN.
I am able to ping etc to the local LAN side of my google server (10.128.1.2) but I can't get to its public IP port (or any public IP).
Is there an easyish way to setup a google VPN tunnel that will route all traffic to the public IP on my servers, or the web in general?
Cheers
google-cloud-platform site-to-site-vpn
I have a google cloud system running on subnet 10.128.1.0/24 and a remote network on 10.173.2.2/23 with a google VPN IPSEC tunnel up and running.
I have the google remote network set to 10.173.2.2/23, and the local IP ranges 0.0.0.0/0 with the reciprocal in the remote site. The intention is to force all network traffic from the remote server through the VPN.
I am able to ping etc to the local LAN side of my google server (10.128.1.2) but I can't get to its public IP port (or any public IP).
Is there an easyish way to setup a google VPN tunnel that will route all traffic to the public IP on my servers, or the web in general?
Cheers
google-cloud-platform site-to-site-vpn
google-cloud-platform site-to-site-vpn
asked Jul 7 '17 at 11:56
Michael DayMichael Day
62
62
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50
add a comment |
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50
add a comment |
0
active
oldest
votes
Your Answer
StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "2"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);
else
createEditor();
);
function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);
);
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f859910%2fgoogle-cloud-vpn-access-to-public-ip-address%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
0
active
oldest
votes
0
active
oldest
votes
active
oldest
votes
active
oldest
votes
Thanks for contributing an answer to Server Fault!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f859910%2fgoogle-cloud-vpn-access-to-public-ip-address%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Same issue here... any hint?
– baraka
Sep 28 '17 at 13:30
Can you provide more information on your use case? My understanding is that you are trying ICMP packets (originated in your premises) to get in the tunnel. Then reach the VM and have a packet reply coming from the external interface back in the tunnel? External IPs on GCE VMs are an abstraction that is performed by Google network (If you list the interfaces in your VMs using “sudo ifconfig -a” you will only see an internal IP interface and a loopback).
– Carlos
Dec 7 '17 at 20:50
That been said, even if the VM had an external IP directly attached to it, some routing could have to be defined in the VM per se, so that packets from the external IP could be send via the internal one. You might want to use “traceroute” on different check points to see how the routing is being done.
– Carlos
Dec 7 '17 at 20:50