Return-Path: X-Original-To: apmail-mesos-issues-archive@minotaur.apache.org Delivered-To: apmail-mesos-issues-archive@minotaur.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 2132C18399 for ; Tue, 12 May 2015 17:33:08 +0000 (UTC) Received: (qmail 27361 invoked by uid 500); 12 May 2015 17:33:08 -0000 Delivered-To: apmail-mesos-issues-archive@mesos.apache.org Received: (qmail 27334 invoked by uid 500); 12 May 2015 17:33:08 -0000 Mailing-List: contact issues-help@mesos.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@mesos.apache.org Delivered-To: mailing list issues@mesos.apache.org Received: (qmail 27324 invoked by uid 99); 12 May 2015 17:33:08 -0000 Received: from arcas.apache.org (HELO arcas.apache.org) (140.211.11.28) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 12 May 2015 17:33:08 +0000 Date: Tue, 12 May 2015 17:33:07 +0000 (UTC) From: "Timothy St. Clair (JIRA)" To: issues@mesos.apache.org Message-ID: In-Reply-To: References: Subject: [jira] [Commented] (MESOS-2044) Use one IP address per container for network isolation MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 [ https://issues.apache.org/jira/browse/MESOS-2044?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14540298#comment-14540298 ] Timothy St. Clair commented on MESOS-2044: ------------------------------------------ flannel intends to provide this abstraction layer for some of impls (VxLan, and OVS).. There may be more on the roadmap. Re: storage - Yes it's all stored under /coreos.com/network/subnets > Use one IP address per container for network isolation > ------------------------------------------------------ > > Key: MESOS-2044 > URL: https://issues.apache.org/jira/browse/MESOS-2044 > Project: Mesos > Issue Type: Epic > Reporter: Cong Wang > > If there are enough IP addresses, either IPv4 or IPv6, we should use one IP address per container, instead of the ugly port range based solution. One problem with this is the IP address management, usually it is managed by a DHCP server, maybe we need to manage them in mesos master/slave. > Also, maybe use macvlan instead of veth for better isolation. -- This message was sent by Atlassian JIRA (v6.3.4#6332)