LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: SNAT / Masquerading problems using LVS-NAT

To: Joseph Mack NA3T <jmack@xxxxxxxx>
Subject: Re: SNAT / Masquerading problems using LVS-NAT
Cc: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Cc: Julian Anastasov <ja@xxxxxx>
From: Simon Horman <horms@xxxxxxxxxxxx>
Date: Tue, 17 Apr 2007 10:46:55 +0900
On Mon, Apr 16, 2007 at 06:01:07PM -0700, Joseph Mack NA3T wrote:
> On Thu, 12 Apr 2007, Rudd, Michael wrote:
> 
> It seems no-one knows. I'm replying so you don't think we're ignoring you.
> 
> Julian, Horms,
>       Any ideas?
> 
> Thanks Joe
> 
> >After some more digging it appears this is related to the OPS or One
> >Packet Scheduling feature. With the OPS feature turned off, the source
> >IP address is correctly SNATed to my VIP. With the OPS feature on and
> >working correctly(which we need for our UDP service), the source IP
> >address isn't correctly SNATed.
> >
> >Is anybody aware of the code for this? I assume its related to not
> >looking up the connection in the hash table anymore with OPS thus not
> >SNATing. Maybe an iptables rule coudl fix this possibly?

That is very curious. The OPS feature doesn't touch that many code paths
from memory, so it should be easy enough to narrow down the cause from here.

-- 
Horms
  H: http://www.vergenet.net/~horms/
  W: http://www.valinux.co.jp/en/


<Prev in Thread] Current Thread [Next in Thread>