Hey dude,
>
> 192.168.30.81 -------+ <------------client (WinNT 4.0)
> |
> 192.168.30.86 |
> 10.0.6.1 ------+ <------------director (Mandrake 7.1, .86 is
> real, the other two are aliases to the card.)
> 192.168.30.99 |
> |
> 10.0.6.2 ------------+ <------------realserver (Mandrake 7.1, will
be
> more eventually)
>
> 30.81 cannot ping 6.2 directly. As near as I can figure, the routing
tables
> and ipvsadm and ipchains are set up correctly...(see below for
details).
My mail client doesn't do ascii pictures well, but from what looks like
what should be, you have stuff setup right. Your NT client is not
supposed to be able to ping your internal real servers (unless you setup
tunneling or vpn or a routing gateway thing or something like that as
far as I know). Anyway, I had problems directly forwarding actual ports
(especially https), but stuff eventually worked for me when someone here
suggested for me to use the firewall mark (fwm) rules for forwarding.
If using ipchains, use the -m flag to mark stuff on www port. It's
worth a shot *shrug*
Jano
|