LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: VIP on real interface.

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: VIP on real interface.
From: Joseph Mack <mack.joseph@xxxxxxx>
Date: Wed, 17 Mar 2004 08:21:46 -0500
Dan wrote:

> > in a normal setup you don't need the arp command. Did you
> > need this because there is no IP on eth0?
> 
> Yup.  When the realserver needs to send packets back to the client via the gw,
> it needs to arp for the mac of the gw.  Since the realserver doesn't actually
> have an ip to recieve the response to the who-has, it doesn't know how to get
> the packet to the gw.

OK

> > why don't you want an IP on the realserver?
> 
> Only to conserve ips.  

You don't want to use private IPs?

> I've since realized that my realservers are probably
> going to have to have connections to the internet, so they'll probably get
> routable ips anyway. 

If you're concerned about security, only route the packets needed. For 
suggestions see 

http://www.austintek.com/LVS/LVS-HOWTO/HOWTO/LVS-HOWTO.3-Tier.html

Joe

-- 
Joseph Mack PhD, High Performance Computing & Scientific Visualization
SAIC, Supporting the EPA Research Triangle Park, NC 919-541-0007
Federal Contact - John B. Smith 919-541-1087 - smith.johnb@xxxxxxx
<Prev in Thread] Current Thread [Next in Thread>