Julian Anastasov wrote:
> > in 2.4.x VS-NAT, are all ports from the real-server masqueraded or only
> > the ports for the services that LVS is controlling?
>
> LVS masquerades only its connections, even in 2.2.
In 2.2.x, I setup VS-NAT by running ipvsadm commands for a service
and then a complementary ipchains command like
ipchains -A forward -p tcp -j MASQ -s realserver_name service_name -d 0.0.0.0/0
to demasquerade the service.
Are you saying this wasn't neccessary in 2.2.x?
Joe
--
Joseph Mack PhD, Senior Systems Engineer, Lockheed Martin
contractor to the National Environmental Supercomputer Center,
mailto:mack.joseph@xxxxxxx ph# 919-541-0007, RTP, NC, USA
|