Juergen Jaeschke wrote:
> > LVS has an uneasy coexistance
> > with netfilter.
>
> Yes, i already realized that :-( Bad thing is that i
> 1. need to use both of them and
> 2. (at least think to) need the above behaviour. Switching to DNAT
> is not an option because i want packets to arrive with VIP. Ok,
> handling the service on the (real==virtual) port on realserver would
> solve the problem...
for your sanity, it would be best if you kept the lvs director forwarding
separate to the port rewritting. Doing the port rewriting on the realserver
hopefully would work.
Joe
--
Joseph Mack PhD, Senior Systems Engineer, Lockheed Martin
contractor to the National Environmental Supercomputer Center,
mailto:mack.joseph@xxxxxxx ph# 919-541-0007, RTP, NC, USA
|