Re: [lvs-users] Disable persistent connections for certain source IP

To: " users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: [lvs-users] Disable persistent connections for certain source IP
Cc: Jean Paul Galea <jp@xxxxxxxx>
From: David Coulson <david@xxxxxxxxxxxxxxxx>
Date: Wed, 31 Jul 2013 07:39:24 -0400
On 7/31/13 4:58 AM, Jean Paul Galea wrote:
> Hi,
> We are using LVS-DR with persistent connections enabled.
> Our ldirectord config looks something like this;
> virtual = 80
>     protocol = fwm
>     scheduler = wrr
>     persistent = 300
>     real = gate 10
>     real = gate 10
> Is it possible to disable persistent connections for requests coming
> from certain src IP addresses?
Since you are using fwm it makes this easy. Just define a second virtual 
section, call it 81 or something. Duplicate what you have for 80, but 
don't include the persistent parameter.

Then just use iptables to mark internal traffic to the 81 virtual 
server, and everything else to the 80.

Please read the documentation before posting - it's available at: mailing list - lvs-users@xxxxxxxxxxxxxxxxxxxxxx
Send requests to lvs-users-request@xxxxxxxxxxxxxxxxxxxxxx
or go to

<Prev in Thread] Current Thread [Next in Thread>