About VPN Network Interfaces

My Server have 2 eth,
and one of public network, else one is inner network

will the agent select the inner interface?

I set the CATTLE_AGENT_IP with public network

Hey @xrain0610,

Before I continue, let me just state for clarity that my understanding is that the agents will connect to the Rancher server (control host) using the public IP. It sounds like this is what you wanted.

To answer your question regarding the VPN connections; these are established directly between Rancher hosts so they don’t rely upon the Rancher server from a traffic or routing perspective. However, as the server is only aware of the public IP of each host, this is what will be used to build the VPN configuration and when the VPNs are established.