Larry Ludwig wrote:
My question, what's the best setup of an iptables firewall to use with with
LVS-DR? Does iptables have some connection limit per IP that automaticly
blocks a connection after a large amount of requests (in our case apachebench
is coming from one IP)
Yes, you'll run out of ports for a start and file descriptors on the
client....
But LVS has it's own hash related issues, you need to test from multiple
source ip's.
2. Also we seem to max out at 30k connections on our testing, and appears to
be some hard limit withing ipvsadm? How can we increase this? The server has
2GB of RAM (I know way too much but bought all hardware in bulk) so it has
plenty of ram. No matter how many connectons we throw at it using apachebench
we can't get it past that #.
Pretty similar results to this earlier posting, sounds like it's just a
feature:
http://archive.linuxvirtualserver.org/html/lvs-users/2006-07/msg00025.html
Regards,
Malcolm.
|