Re: [squid-users] squid prosy with multi wan links and load balancer

From: Henrik Nordström <henrik_at_henriknordstrom.net>
Date: Tue, 02 Mar 2010 10:26:46 +0100

tis 2010-03-02 klockan 09:05 +0800 skrev luke:

> why iptables can't not control the traffic

iptables can not control the initial ip assignment of outgoing
connections, that's done by the routing table.

You created a multilink default gateway route, and here the routing
table distributes traffic among those links, which also means outgoing
connectionsa will get IP assignment based on the routing desicion taken
for the first packet of that tcp connection.

For best experience with multilink routing I recommend using source
based policy routing rather than marking.

Regards
Henrik
Received on Tue Mar 02 2010 - 09:26:50 MST

This archive was generated by hypermail 2.2.0 : Tue Mar 02 2010 - 12:00:02 MST