Matt.Gregory@xxxxxxxxx wrote:
>
> I posted this once before, but got no responses and I'm really at a loss.
>
> I have an LVS configuration as follows:
>
> <firewall/gateway>
> | /\
> | |
> V |
> <director>/|
> | / |
> | / |
> V / |
> <zope1> <zope2>
>
> before I run the rc.lvs_dr script on the realservers (zope1/2) I can reach
> them through the firewall without problems. Once I run the IPVS
> configuration script, however, I cannot reach them through the gateway.
This is a feature of the configure software. In general clients are not to
connect directly to the realservers. eg see
http://www.linuxvirtualserver.org/Joseph.Mack/HOWTO/LVS-HOWTO-13.html#ss13.6
However in individual cases there may be reasons to allow clients to connect
directly to (some ports on) the realservers. The routing rules that the
0.9.x configure script sets up on the realservers are relatively simple
and you should be able to change them after setup by looking at the output
of `netstat -rn`.
If this brings you no joy, contact me directly off-line.
Joe
--
Joseph Mack PhD, Senior Systems Engineer, Lockheed Martin
contractor to the National Environmental Supercomputer Center,
mailto:mack.joseph@xxxxxxx ph# 919-541-0007, RTP, NC, USA
|