LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: [lvs-users] LVS-NAT and Iptables same box

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: [lvs-users] LVS-NAT and Iptables same box
From: Joseph Mack NA3T <jmack@xxxxxxxx>
Date: Tue, 4 Mar 2008 13:20:01 -0800 (PST)
On Tue, 4 Mar 2008, Gustavo Mateus wrote:

> This way did not work. With TCPDUMP I see that the client package
> reaches the virtual server (VIP 201.X.X.25) an reaches the real server.
>
> The problem is that the request gets to the VIP this way:
> 17:19:24.892819 IP 189.X.X.10.47505 > 201.X.X.25.80: S
> 3715440259:3715440259(0) win 5840 <mss 1460,sackOK,timestamp 72467850
> 0,nop,wscale 6>
> 17:19:24.892929 IP 201.X.X.25 > 189.X.X.10: ICMP 201.X.X.25 tcp port 80
> unreachable, length 68

ah no it doesn't. The service isn't being 
forwarded. Check your ipvsadm table, turn off your firewall 
rules and try again. When it works, add back your firewall 
rules.

Joe

-- 
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml
Homepage http://www.austintek.com/ It's GNU/Linux!


<Prev in Thread] Current Thread [Next in Thread>