LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: LVS/DR and iptables connection tracking

To: Kris Boulez <kris.boulez@xxxxxxxxxx>
Subject: Re: LVS/DR and iptables connection tracking
Cc: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
From: Julian Anastasov <ja@xxxxxx>
Date: Tue, 2 Sep 2003 14:01:23 +0300 (EEST)
        Hello,

On Tue, 2 Sep 2003, Kris Boulez wrote:

> We want to configure a HA firewall with Direct Routing. It seems that no
> connection tracking is taking place when using DR. We see packets going
> from the outside to an inside server, but return packets are dropped on
> the firewall by iptables.
> Is there something magical one has to do, to get this working ?

        The antefacto patch does not support LVS-DR, in the following
days I'll try to add DR/TUN support as well, which is useful for setups
using forward_shared.

> Details
> -------
> linux-2.4.21
> keepalived-1.1.1
> ipvs-1.0.10
>  "antefacto" patch
>  "forward_shared" patch (forward_shared-2.4.19-2.diff)

Regards

--
Julian Anastasov <ja@xxxxxx>

<Prev in Thread] Current Thread [Next in Thread>