LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: LVS/DR and iptables connection tracking

To: Julian Anastasov <ja@xxxxxx>
Subject: Re: LVS/DR and iptables connection tracking
Cc: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
From: Kris Boulez <kris.boulez@xxxxxxxxxx>
Date: Tue, 02 Sep 2003 13:26:41 +0200
On Tue, 2003-09-02 at 13:01, Julian Anastasov wrote:
>       Hello,
> 
> On Tue, 2 Sep 2003, Kris Boulez wrote:
> 
> > We want to configure a HA firewall with Direct Routing. It seems that no
> > connection tracking is taking place when using DR. We see packets going
> > from the outside to an inside server, but return packets are dropped on
> > the firewall by iptables.
> > Is there something magical one has to do, to get this working ?
> 
>       The antefacto patch does not support LVS-DR, in the following
> days I'll try to add DR/TUN support as well, which is useful for setups
> using forward_shared.
> 
Thanks for the quick answer.
We'll stick with LVS-NAT for the moment. If you need someone to test the
patches, just drop me a line.

Kris,
-- 
Kris Boulez (kris.boulez@xxxxxxxxxx)


<Prev in Thread] Current Thread [Next in Thread>