Re: Iptables, SNAT/MASQ, Multiple gateways

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, 30 Sep 2002, Don Cohen wrote:

> Simon Matthews writes:
>  > OK, this may be a reasonable approach, but how do I force it initiate 
>  > connections from the "fast" interface, yet allow it to fail over to the 
>  > slow interface if the sytem removes the route to the fast gateway because 
>  > it has detected that it is not responding? 
> 
> Off hand I don't know anything built in for this (I look forward to
> hearing an answer from someone who does), but I don't think this is 
> really what you want anyway.  It's not as if your link is the only one
> that could fail!

Don, there are some kernel patches (already installed on my system) that 
support dead gateway detection and static routes. "Static" means that the 
routes are not forgotten when the system removes an interface because the 
gateway is not working. 

But the problem remains: how to handle this in iptables MASQ/SNAT
commands? One can postulate that if the interface is removed because the
gateway is dead, then the MASQ command will use the source related to the 
other gateway.  

However, the question now is: how to force the system to use the source
address related to the "fast" gateway under normal operation while
allowing a failover to the the slow gateway?

Simon

_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux