On Fri, Sep 01, 2006 at 03:40:57PM -0700, Joseph Mack NA3T wrote:
> On Fri, 1 Sep 2006, Viktors Rotanovs wrote:
>
> >>> Yep. In short - is it possible to do port redirection using iptables
> >>> _after_ director on localnode?
> >>
> >>no, it's somewhere in the HOWTO for localnode
> >
> >Thanks!
> >I've changed NF_IP_LOCAL_IN to NF_IP_PRE_ROUTING at ip_vs_in_ops in
> >ip_vs_core.c, and now it bypasses NAT, but I'm not a kernel hacker and
> >I don't know which priority should be set and if it's possible to
> >solve the problem that way.
>
> Horms,
> Viktors wants to redirect ports with localnode.
> (There may be other ways of accomplishing what he wants, but
> that's not the issue here). He's moved the ip_vs hook to
> PRE_ROUTING. How does he then NAT the incoming packets (and
> unNAT them on the way back)?
Here is my take on this problem
http://archive.linuxvirtualserver.org/html/lvs-users/2005-06/msg00113.html
http://archive.linuxvirtualserver.org/html/lvs-users/2005-06/msg00102.html
--
Horms
H: http://www.vergenet.net/~horms/
W: http://www.valinux.co.jp/en/
|