[Shorewall-users] Shorewall and LoadBalancing ?

Tom Eastep teastep at shorewall.net
Mon May 12 12:03:26 PDT 2003


On Mon, 12 May 2003 10:58:57 -0700, Tom Eastep <teastep at shorewall.net> 
wrote:


>>
>
> Actually, a flat "no" might be a bit too strong. You can use the <ip1>- 
> <ip2> syntax in a "DNAT-" rule so if the servers that you want to load- 
> balance over have contiguous addresses then you can make it work with a 
> single "DNAT-" rule and one or more accompanying ACCEPT rules.
>

Example:

DNAT-	 net	dmz:192.168.1.3-192.168.1.12	tcp	80	-	206.124.146.178
ACCEPT net	dmz:192.168.1.3			tcp	80
ACCEPT net	dmz:192.168.1.4			tcp	80
...
ACCEPT net	dmz:192.168.1.12			tcp	80

-Tom
-- 
Tom Eastep    \ Shorewall - iptables made easy
Shoreline,     \ http://www.shorewall.net
Washington USA  \ teastep at shorewall.net



More information about the Shorewall-users mailing list