Brandon Black
Track New challenges in Virtualization devroom

Building VPNs in EC2

Amazon's EC2, like most virtualization environments, presents a number of network configuration challenges to overcome when deploying large-scale Internet services, especially if you're doing anything other than serving standard HTTP services. This talk is intended to convey some of the key practical experience we've gained from re-deploying an existing complex, high-traffic, non-HTTP service into EC2. The focus will mostly be on network design and configuration issues that led to using (and patching) the tinc VPN daemon to route high volumes of production traffic for us. Many challenges in this area remain and I hope that conveying our experiences will aid other engineers working on similar problems, and provide other developers interesting problems to think about going forward.