LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: Direct/Tunneling lvs and spoofing protection

To: Stephen Zander <gibreel@xxxxxxxxx>
Subject: Re: Direct/Tunneling lvs and spoofing protection
Cc: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
From: Joseph Mack <mack@xxxxxxxxxxx>
Date: Tue, 14 Mar 2000 05:54:46 -0500 (EST)
On 14 Mar 2000, Stephen Zander wrote:

> 
> I moved on and am now seting up another lvs redirector/firewall
> configuration using 0.9.7 (as pakaged in Debian) and 2.2.13 and I
> cannot for the life of me get either IP tunneling or direct connection
> to work.
> 
> I don't think it's an lvs issue per se, because I can sniff packets
> coming into the rediretor, out the redirector, into the real box, and
> out the real box.  However, the packes are never being forwarded back
> out the redirector to the real world.

in VS-DR and VS-Tun the packets returning fromthe realservers to the
client go directly to the client, via the realservers default gw and
_do_not_ go via the director. With VS-NAT the packets go back through
the director.

Joe

--
Joseph Mack mack@xxxxxxxxxxx



<Prev in Thread] Current Thread [Next in Thread>