On Mon, 30 Sep 2002, Don Cohen wrote: > Simon Matthews writes: > > OK, this may be a reasonable approach, but how do I force it initiate > > connections from the "fast" interface, yet allow it to fail over to the > > slow interface if the sytem removes the route to the fast gateway because > > it has detected that it is not responding? > > Off hand I don't know anything built in for this (I look forward to > hearing an answer from someone who does), but I don't think this is > really what you want anyway. It's not as if your link is the only one > that could fail! Don, there are some kernel patches (already installed on my system) that support dead gateway detection and static routes. "Static" means that the routes are not forgotten when the system removes an interface because the gateway is not working. But the problem remains: how to handle this in iptables MASQ/SNAT commands? One can postulate that if the interface is removed because the gateway is dead, then the MASQ command will use the source related to the other gateway. However, the question now is: how to force the system to use the source address related to the "fast" gateway under normal operation while allowing a failover to the the slow gateway? Simon _______________________________________________ LARTC mailing list / LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/