- Subject: Re: fail in the connmark load-balancing
- From: Andrew Beverley <andy@xxxxxxxxxxx>
- Date: Sun, 12 Feb 2012 22:10:58 +0000
- Cc: Mail List - Netfilter <netfilter@xxxxxxxxxxxxxxx>
- In-reply-to: <CAMTjHrw9SY99jV9iwVH2CaSX2s4s=m7wzSjYii_k_D8fmJrDzA@mail.gmail.com>
On Sat, 2012-02-11 at 18:19 -0200, Usuário do Sistema wrote:
> Hello,
>
> I've just deployed the load balance in the my firewall iptables
> 1.4.3.1 as How to below:
>
> http://www.sysresccd.org/Sysresccd-Networking-EN-Iptables-and-netfilter-load-balancing-using-connmark
> I need add follow line to occur the load balance ??
[...]
> ip route add default scope global equalize nexthop via x.y.t.z1 weight
> 2 nexthop via x.y.t.z2 weight 2
No, you don't need that line when doing load sharing with the method
described above. That will break the sharing per-connection, which is
obviously what you are trying to achieve.
If it's not working, there must be another problem. Please show the
output of "ip rule show", "ip ro" and "ip ro show table <table>" for
each of your tables where <table> is the name of the tables.
Andy
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
[Linux Netfilter Development]
[Linux Kernel Networking Development]
[Linux Networking Development]
[Linux Kernel Development]
[Linux Resources]
[LARTC]
[Bugtraq]
[Consulting]
[Free Internet Dating]
[Yosemite Forum]
[Photo]