[mb@xxxxxxxxxxxxxxxx]:
>
> Has anyone attempted/is currently running LVS as a pair of
> fault-tolerant firewalls?
>
> Very interested to hear comments/experiences!
do you really need LVS? you only need failover, not load balancing,
right?
keepalived does the failover bit nicely.
(Julian Anastasov is working on making LVS integrate with Netfilter.
LVS passes on the packets before firewall rules are applied. if the
code is completed, Netfilter integration will be an option since the
performance penalty is quite noticable.)
--
Kjetil T. | read and make up your own mind
| http://www.cactus48.com/truth.html
|