Re: Redirect mirrored traffic to userspace app. [RESOLVED]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thursday 2010-10-21 19:56, Mateus Caruccio wrote:
>>>>From DEVEL_SRV we ran:
>>>
>>># ifconfig eth1 PROD_SRV_IP netmask PROD_SRV_NETMASK promisc -arp hw
>>>ether PROD_SRV_HWADDR up
>>>
>>>That is it !
>>>
>>>All traffic targeted to PROD_SRV_IP is now being accepted by our
>>>mirrored eth1. Since this is an interface aimed to tests only, no
>>>matter what's being accepted.
>>
>> It still looks wrong though. When using TEE, no expensive promiscous
>> mode is required, nor are static ARP entries.
>
>As I said, I do not have access/permission to run anything in our
>production servers (our admins are a "little" paranoid :)

Right. But what I thought of is that you put the teeing host
_in front of_ the prod server.
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux