Joeseph,
Actually I did see it in the FAQ but maybe I missunderstood the mechanism by
which it handles getting the masq done. I haven't setup any MASQ rules
myself for either the primary or secondary director. My understanding is
that the director handles this...but it does it using netfilter correct? So
shouldn't I be able to see any iptables rules? Or, are you saying that
ipvsadm handles all the MASQ stuff itself and does the forwarding, source
and dest address changing, etc? If so, it certainly seems like it's not
working correctly for my backup. I know forwarding is working because
packets make it in through the LD to the RS and back to the LD but not
beyond. That's the issue I guess, why would the packets not leave the LD?
When I do an ipvsadm -Lcn these connections show up as:
IPVS connection entries
pro expire state source virtual destination
TCP 00:25.52 SYN_RECV 10.10.9.63:2897 10.10.21.68:80 10.200.200.1:80
TCP 00:45.92 SYN_RECV 10.10.9.63:2898 10.10.21.68:80 10.200.200.1:80
TCP 00:42.92 SYN_RECV 10.10.9.63:2900 10.10.21.68:80 10.200.200.1:80
TCP 00:51.92 SYN_RECV 10.10.9.63:2902 10.10.21.68:80 10.200.200.1:80
TCP 00:08.92 SYN_RECV 10.10.9.63:2891 10.10.21.68:80 10.200.200.1:80
TCP 00:52.72 SYN_RECV 10.10.9.63:2895 10.10.21.68:80 10.200.200.1:80
TCP 00:30.72 SYN_RECV 10.10.9.63:2894 10.10.21.68:80 10.200.200.1:80
And eventually they time out. On my other LD everything is working
perfectly. Any ideas, however crazy sounding or possible insulting (feel
free to assume I'm an idiot and forgot some basic config step) are
appreciated at this point. :)
Mark
> -----Original Message-----
> From: lvs-users-admin@xxxxxxxxxxxxxxxxxxxxxx
> [mailto:lvs-users-admin@xxxxxxxxxxxxxxxxxxxxxx]On Behalf Of
> Joseph Mack
> Sent: Wednesday, May 16, 2001 1:19 PM
> To: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
> Subject: Re: Hot Spare config with LVS? - More Questions
>
>
> On Wed, 16 May 2001, Mark Miller wrote:
>
> > heading back to the client. I'm using LVS-NAT btw. So
> anyway, my theory is
> > that for some reason the SNAT is not taking place on this
> LD. I've been
>
> with a 2.4.x director, VS-NAT sets up the masq rules for you.
> YOu don't
> need to setup SNAT.
>
> This is mentioned in
>
> http://www.linuxvirtualserver.org/Joseph.Mack/HOWTO/LVS-HOWTO-
> 11.html#ss11.4
>
> but I'll have to move it, as other people have missed it too
>
> Joe
>
> --
> Joseph Mack mack@xxxxxxxxxxx
>
>
> _______________________________________________
> LinuxVirtualServer.org mailing list - lvs-users@xxxxxxxxxxxxxxxxxxxxxx
> Send requests to lvs-users-request@xxxxxxxxxxxxxxxxxxxxxx
> or go to http://www.in-addr.de/mailman/listinfo/lvs-users
|