LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: lvs + nat

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: lvs + nat
Cc: Horms <horms@xxxxxxxxxxxx>
From: Joseph Mack NA3T <jmack@xxxxxxxx>
Date: Fri, 1 Sep 2006 15:40:57 -0700 (PDT)
On Fri, 1 Sep 2006, Viktors Rotanovs wrote:

> Yep. In short - is it possible to do port redirection using iptables
> _after_ director on localnode?

no, it's somewhere in  the HOWTO for localnode

Thanks!
I've changed NF_IP_LOCAL_IN to NF_IP_PRE_ROUTING at ip_vs_in_ops in
ip_vs_core.c, and now it bypasses NAT, but I'm not a kernel hacker and
I don't know which priority should  be set and if it's possible to
solve the problem that way.

Horms,
Viktors wants to redirect ports with localnode. (There may be other ways of accomplishing what he wants, but that's not the issue here). He's moved the ip_vs hook to PRE_ROUTING. How does he then NAT the incoming packets (and unNAT them on the way back)?

Joe

--
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml
Homepage http://www.austintek.com/ It's GNU/Linux!

<Prev in Thread] Current Thread [Next in Thread>