Hi,
i'm using LVS 0.8.1 with FW-Marks and Direct Routing; Director
is default GW (patches applied). Everything is ok for most
of the services, but if i try to direct services to another port
(say incoming is VIP:180, this is fw-marked to 0xb, and i've
set up a rule to DR packets with 0xb to RIP:80) then i end
up in packets to the RIP:VPORT, that is RIP:180 instead
of RIP:80.
I tried to DNAT this service to port 80, and it seems
to work but - as director is firewall, too - i'm ending up
in confusion... (and for sure i think it should work without
strange tricks, doesn't it ??)
Any ideas ?
Thanks,
Jürgen
--
Jürgen Jaeschke Humboldt-University Berlin
Department of Computer Uses in Education Geschwister-Scholl-Str. 7
D-10099 Berlin Tel. (030) 2093-4143
PGP Key ID: 9249A675, Fingerprint: FB953F70 3CEDF075 60D4794B CB8EC240
certified key on all keyservers
|