On Fri, May 21, 2004 at 10:18:32AM -0400, Joseph Mack wrote:
> Horms wrote:
> >
> > The only slight difference
> > is that LVS requires traffic for the VIP to be local, which usually
> > means that it needs to be bound to a local interface. Any local
> > interface.
> >
> > Actually you can get around this
>
> this being "needing a local interface"?
Yes, you can play some games with routing rules to deliver traffic locally.
> > by moving ip_vs_in from the LOCAL_IN
> > hook to the PREROUTING hook. I tried that briefly once and it seemed to
> > work. But it most likely has some interesting side effects.
>
> would it solve the problem of not having the VIP on the director,
> ie when accepting packets for LVS by transparent proxy or fwmark?
Yes. But I am not sure what other problems it might create.
--
Horms
|