On Tue, 12 Sep 2006, Manning, Mark E wrote:
I have been successful in load balancing ftp using the vsFTPd Server and
LVS_DR.
When I configure my Realservers to use TLS keys I can log
in securely but I believe the negotiation of the data
connection is hanging my ftp clients. Is there an LVS_DR
configuration procedure for setting up load balanced
FTPs.
yes, see the HOWTO. ftp being a two port protocol is a
little more difficult than the standard single port LVS
connection.
You haven't got the 2nd port LVS'ed.
Passive FTP is set up in IPtables to be forwarded using FW Mark, I have also
included ports 20 and 21 in the mark'd group.
You should just accept port=ftp and the other ports are
accepted uing "RELATED"
Read the HOWTO on LVS.
are you using fwmark for ftp with ipvsadm? (you don't need
to)
Are the port 20 (or passive ftp) port calls getting back to
the client from the realserver?
FTPs works properly when using the Realservers RIP, it fails when using the
VIP of the cluster.
above you say it fails for TLS
Joe
--
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml
Homepage http://www.austintek.com/ It's GNU/Linux!
|