2 Answers
- Newest
- Most votes
- Most comments
1
Have you looked at this guide? https://docs.aws.amazon.com/vpn/latest/clientvpn-admin/scenario-peered.html
0
To allow users from your OpenVPN server (in VPC A) to access the Elasticsearch and Kibana services (in VPC B), you can follow these steps:
-
Create a Network Load Balancer (NLB) in VPC B:
- Deploy an NLB in VPC B and configure it to forward traffic to the Elasticsearch and Kibana services running in your EKS cluster.
- Ensure that the NLB is configured with the appropriate security group rules to allow incoming traffic from the OpenVPN server's IP range (or the entire VPC A CIDR block).
-
Configure VPC Peering Connection:
- Ensure that the VPC peering connection between VPC A and VPC B is properly configured to allow traffic between the two VPCs.
- Update the route tables in both VPCs to route traffic destined for the other VPC's CIDR block through the VPC peering connection.
-
Configure Security Groups:
- In VPC B, ensure that the security group associated with the Elasticsearch and Kibana services allows incoming traffic from the NLB's security group.
- In VPC A, ensure that the security group associated with the OpenVPN server allows outbound traffic to the NLB's security group in VPC B.
-
Access Elasticsearch and Kibana:
- From the OpenVPN client machines, users should be able to access the Elasticsearch and Kibana services using the NLB's DNS name or IP address.
Here's a summary of the steps:
- Create an NLB in VPC B to forward traffic to Elasticsearch and Kibana services.
- Configure VPC peering connection and route tables to allow traffic between VPCs.
- Configure security groups in both VPCs to allow traffic between OpenVPN server and NLB.
- Users from OpenVPN can access Elasticsearch and Kibana using the NLB's endpoint.
By using an NLB, you can expose the Elasticsearch and Kibana services to the OpenVPN clients without exposing them directly to the internet. The NLB acts as a secure entry point, and the VPC peering connection allows communication between the two VPCs.
answered 14 days ago
Relevant content
- asked 5 months ago
- AWS OFFICIALUpdated 4 months ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 4 months ago