Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

100.64.0.0/10 is routable address space #455

Open
osterman opened this issue Apr 10, 2019 · 1 comment
Open

100.64.0.0/10 is routable address space #455

osterman opened this issue Apr 10, 2019 · 1 comment

Comments

@osterman
Copy link
Member

osterman commented Apr 10, 2019

It was raised by @Nuru that 100.64.0.0/10 is actually reserved address space. This also happens to be the kops default fornonMasqueradeCIDR: 100.64.0.0/10. So this has been in use for by kops as the default for around 2 years, and since a lot of people are using it, it should be reasonably well vetted and supported. Just be aware that it could be a bad idea to use it. The address is routable, and it routes to the carrier's NAT pool, so if it ever gets out of the cluster it will cause weird and potentially very hard-to-diagnose problems.

@Nuru
Copy link
Contributor

Nuru commented Apr 10, 2019

My preferred CIDR is 172.24.0.0/13, which leaves 172.16.0.0/16 for naive users, 172.17.0.0/16 for Docker (it's default), and 172.18.0.0/16 for Docker Compose, and still gives kops 16 networks of 64k addresses each to use.

References:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants