Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: Linux Virtual Server: Users

[lvs-users] sh algo w/ NAT?

 

 

Linux Virtual Server users RSS feed   Index | Next | Previous | View Threaded


christopher.barry at qlogic

Apr 9, 2008, 6:28 AM

Post #1 of 3 (598 views)
Permalink
[lvs-users] sh algo w/ NAT?

Does this work? I'm getting people on a network unable to connect.

-C
_______________________________________________
LinuxVirtualServer.org mailing list - lvs-users [at] LinuxVirtualServer
Send requests to lvs-users-request [at] LinuxVirtualServer
or go to http://lists.graemef.net/mailman/listinfo/lvs-users


christopher.barry at qlogic

Apr 9, 2008, 7:17 AM

Post #2 of 3 (565 views)
Permalink
Re: [lvs-users] sh algo w/ NAT? [In reply to]

More info:

Last night late, I edited my ipvsadm file and changed my wlc's to sh's, and then did a ipvsadm-restore. I tested it from a variety of locations, using ssh and vnc and all looked cool. I verified I always landed on the same box, at least on a per-protocol level. All was good.

This morning, I'm rudely awakened by developers in the office that are all getting connection refused from the cluster for everything but telnet. If I do an iptstate on the director, I see an outbound ESTABLISHED to every client node on that net to port 80 (I'm not even using this port) from port 58008. I will admit I did do a nmap -sP to that net to see if I could reach it. Could that be the port 80 entries? Also the TTL on these outbounds is 119 hours!


Anyway, the question: should I failover tothe spare director to make this scheduler change?


-C

-----Original Message-----
From: lvs-users-bounces [at] linuxvirtualserver on behalf of Christopher Barry
Sent: Wed 4/9/2008 9:28 AM
To: lvs-users [at] linuxvirtualserver
Subject: [lvs-users] sh algo w/ NAT?


Does this work? I'm getting people on a network unable to connect.

-C
_______________________________________________
LinuxVirtualServer.org mailing list - lvs-users [at] LinuxVirtualServer
Send requests to lvs-users-request [at] LinuxVirtualServer
or go to http://lists.graemef.net/mailman/listinfo/lvs-users


_______________________________________________
LinuxVirtualServer.org mailing list - lvs-users [at] LinuxVirtualServer
Send requests to lvs-users-request [at] LinuxVirtualServer
or go to http://lists.graemef.net/mailman/listinfo/lvs-users


jmack at wm7d

Apr 9, 2008, 7:25 AM

Post #3 of 3 (567 views)
Permalink
Re: [lvs-users] sh algo w/ NAT? [In reply to]

On Wed, 9 Apr 2008, Christopher Barry wrote:

> If I do an iptstate on
> the director, I see an outbound ESTABLISHED to every
> client node on that net to port 80

the lvs director doesn't terminate connections. You
shouldn't have anything listening on port 80 on the director

Joe

--
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml
Homepage http://www.austintek.com/ It's GNU/Linux!

_______________________________________________
LinuxVirtualServer.org mailing list - lvs-users [at] LinuxVirtualServer
Send requests to lvs-users-request [at] LinuxVirtualServer
or go to http://lists.graemef.net/mailman/listinfo/lvs-users

Linux Virtual Server users RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact Gossamer Threads
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.