Skip to content

Internet outbound access for workloads on Galactic VPC #911

Description

@privateip

High-Level Summary

Workloads running in a Galactic VPC can reach the public internet. Apps can call outside APIs, download updates, and connect to services hosted elsewhere, with nothing for the user to set up.

Core Experience

  • Internet access works by default for every workload in a VPC
  • Workloads can reach any site or service, including older ones that only support IPv4
  • Users can turn internet access off for workloads that should stay private

Motivation

Almost every application needs to talk to something on the internet. Today, workloads in a Galactic VPC can only talk to each other, which rules out most real-world apps running on Datum Compute (#682).

Non-Goals

  • Letting people on the internet connect in to a workload. That's covered by ingress.
  • Dedicated or customer-owned public IP addresses

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

ConnectProduct line: connecting networks, systems, and communities

Fields

Priority

None yet

Projects

Relationships

None yet

Development

No branches or pull requests

Issue actions