* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
@ 2001-03-21 19:10 ` Christian Worm Mortensen
2001-03-21 20:24 ` Jorge Boncompte [DTI2]
` (4 subsequent siblings)
5 siblings, 0 replies; 7+ messages in thread
From: Christian Worm Mortensen @ 2001-03-21 19:10 UTC (permalink / raw)
To: lartc
Hi,
> one of the linux machine) to make connections to the outside. As my
> load balancing is done depending on (source address, dst address) pair
> all http (=proxied) connections are always made through the same
> gateway and no balancing is performed :-(.
Why not? If it is based on _both_ source and destination address? Or maybe you have a parrent cache your squid always talks to?
Christian
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
2001-03-21 19:10 ` Christian Worm Mortensen
@ 2001-03-21 20:24 ` Jorge Boncompte [DTI2]
2001-03-21 20:31 ` Jorge Boncompte [DTI2]
` (3 subsequent siblings)
5 siblings, 0 replies; 7+ messages in thread
From: Jorge Boncompte [DTI2] @ 2001-03-21 20:24 UTC (permalink / raw)
To: lartc
Squid isn't a ftp proxy. Squid can connect to ftp sites as a client, but
cannot proxy ftp protocol.
Do not intend to redirect ftp sessions to squid, leave it to pass through
your gateway, as any other protocol.
If you need to control ftp sessions, install a socks proxy, and use an
ftp client that has support for it.
Regards.
-Jorge
===============================
Jorge Boncompte - Técnico de sistemas
DTI2 - Desarrollo de la Tecnología de las Comunicaciones
--------------------------------------------------------------
C/ Abogado Enriquez Barrios, 5 14004 CORDOBA (SPAIN)
Tlf: +34 957 761395 / FAX: +34 957 450380
--------------------------------------------------------------
jorge@dti2.net _-_-_-_-_-_-_-_-_-_-_-_-_-_ http://www.dti2.net
===============================
Without wicker a basket cannot be done.
===============================
----- Original Message -----
From: "Christian Worm Mortensen" <worm@dkik.dk>
To: "RoMaN SoFt / LLFB!!" <roman@madrid.com>; <lartc@mailman.ds9a.nl>
Sent: Wednesday, March 21, 2001 8:10 PM
Subject: Re: [LARTC] Tricking routes to load balance + transparent proxying?
Hi,
> one of the linux machine) to make connections to the outside. As my
> load balancing is done depending on (source address, dst address) pair
> all http (=proxied) connections are always made through the same
> gateway and no balancing is performed :-(.
Why not? If it is based on _both_ source and destination address? Or maybe
you have a parrent cache your squid always talks to?
Christian
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO:
http://ds9a.nl/2.4Routing/
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
2001-03-21 19:10 ` Christian Worm Mortensen
2001-03-21 20:24 ` Jorge Boncompte [DTI2]
@ 2001-03-21 20:31 ` Jorge Boncompte [DTI2]
2001-03-22 8:24 ` RoMaN SoFt / LLFB!!
` (2 subsequent siblings)
5 siblings, 0 replies; 7+ messages in thread
From: Jorge Boncompte [DTI2] @ 2001-03-21 20:31 UTC (permalink / raw)
To: lartc
Sorry I replied the wrong message... Anyway... What are your ip rule
settings, etc...??
-Jorge
P.D. Roman?¿? Llevo un par de días intentando responderte a tu mensaje pero
me los devuelve el servidor de correo.
===============================
Jorge Boncompte - Técnico de sistemas
DTI2 - Desarrollo de la Tecnología de las Comunicaciones
--------------------------------------------------------------
C/ Abogado Enriquez Barrios, 5 14004 CORDOBA (SPAIN)
Tlf: +34 957 761395 / FAX: +34 957 450380
--------------------------------------------------------------
jorge@dti2.net _-_-_-_-_-_-_-_-_-_-_-_-_-_ http://www.dti2.net
===============================
Without wicker a basket cannot be done.
===============================
----- Original Message -----
From: "Christian Worm Mortensen" <worm@dkik.dk>
To: "RoMaN SoFt / LLFB!!" <roman@madrid.com>; <lartc@mailman.ds9a.nl>
Sent: Wednesday, March 21, 2001 8:10 PM
Subject: Re: [LARTC] Tricking routes to load balance + transparent proxying?
Hi,
> one of the linux machine) to make connections to the outside. As my
> load balancing is done depending on (source address, dst address) pair
> all http (=proxied) connections are always made through the same
> gateway and no balancing is performed :-(.
Why not? If it is based on _both_ source and destination address? Or maybe
you have a parrent cache your squid always talks to?
Christian
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO:
http://ds9a.nl/2.4Routing/
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
` (2 preceding siblings ...)
2001-03-21 20:31 ` Jorge Boncompte [DTI2]
@ 2001-03-22 8:24 ` RoMaN SoFt / LLFB!!
2001-03-22 11:14 ` RoMaN SoFt / LLFB!!
2001-03-23 8:35 ` RoMaN SoFt / LLFB!!
5 siblings, 0 replies; 7+ messages in thread
From: RoMaN SoFt / LLFB!! @ 2001-03-22 8:24 UTC (permalink / raw)
To: lartc
On Wed, 21 Mar 2001 21:31:28 +0100, you wrote:
> Sorry I replied the wrong message... Anyway... What are your ip rule
>settings, etc...??
My settings are simple:
1) Setting up the multipath route:
/usr/sbin/ip route add default \
nexthop dev eth0 via 192.168.0.229 onlink \
nexthop dev eth0 via 192.168.0.230 onlink
Note I've removed the "equalize" option. Anyway I think this option
does NOTHING if you don't patch your kernel so it should be the same
having it or not.
2) TOS hacking:
/usr/local/sbin/iptables -t mangle -A PREROUTING -j TOS
--set-tos 0x00
/usr/local/sbin/iptables -t mangle -A OUTPUT -j TOS --set-tos
0x00
As I said this converts my machine in a load balancer based on (src
ip, dst ip) pair.
The problem is squid which always use the same IP for ALL
connections. This breaks my balance :-(
Right now?
PS: Mail.com (the company madrid.com domain belongs to) has had
problems and has rejected all mail during last day aprox. If all is ok
now, I'll start to receive all delayed mail. At least I hope so :)
>P.D. Roman?¿? Llevo un par de días intentando responderte a tu mensaje pero
>me los devuelve el servidor de correo.
Lo dicho, problemas con madrid.com. Puedes intentar mi direccion
"directa" (madrid.com es un forwarder) si alguna vez tienes pbas:
roman@batmap.com
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
** RoMaN SoFt / LLFB **
roman@madrid.com
http://pagina.de/romansoft
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
` (3 preceding siblings ...)
2001-03-22 8:24 ` RoMaN SoFt / LLFB!!
@ 2001-03-22 11:14 ` RoMaN SoFt / LLFB!!
2001-03-23 8:35 ` RoMaN SoFt / LLFB!!
5 siblings, 0 replies; 7+ messages in thread
From: RoMaN SoFt / LLFB!! @ 2001-03-22 11:14 UTC (permalink / raw)
To: lartc
On Wed, 21 Mar 2001 20:10:19 +0100, you wrote:
>Hi,
>
>> one of the linux machine) to make connections to the outside. As my
>> load balancing is done depending on (source address, dst address) pair
>> all http (=proxied) connections are always made through the same
>> gateway and no balancing is performed :-(.
>
>Why not? If it is based on _both_ source and destination address? Or maybe you have a parrent cache your squid always talks to?
No, no parent cache. You're right, it should balance traffic because
while src address keeps "static", destination address is changing
depending on the URL being requested. I'll keep on watching sniffer
activity and making some tests.
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
** RoMaN SoFt / LLFB **
roman@madrid.com
http://pagina.de/romansoft
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread* Re: [LARTC] Tricking routes to load balance + transparent proxying?
2001-03-21 16:37 [LARTC] Tricking routes to load balance + transparent proxying? RoMaN SoFt / LLFB!!
` (4 preceding siblings ...)
2001-03-22 11:14 ` RoMaN SoFt / LLFB!!
@ 2001-03-23 8:35 ` RoMaN SoFt / LLFB!!
5 siblings, 0 replies; 7+ messages in thread
From: RoMaN SoFt / LLFB!! @ 2001-03-23 8:35 UTC (permalink / raw)
To: lartc
On Thu, 22 Mar 2001 09:24:18 +0100, you wrote:
>On Wed, 21 Mar 2001 21:31:28 +0100, you wrote:
>/usr/sbin/ip route add default \
> nexthop dev eth0 via 192.168.0.229 onlink \
> nexthop dev eth0 via 192.168.0.230 onlink
>
> Note I've removed the "equalize" option. Anyway I think this option
>does NOTHING if you don't patch your kernel so it should be the same
>having it or not.
I've left the "onlink" option because I don't know which really does.
> As I said this converts my machine in a load balancer based on (src
>ip, dst ip) pair.
>
> The problem is squid which always use the same IP for ALL
>connections. This breaks my balance :-(
Well, thinking more deeply, it shoudn't break balance because dst ip
changes with each connection (to a different site, of course). But
anyway I'm not getting the expected results. Sometimes during a
period (2-3 mins, eg) all connections (different dst sites included)
are routed via gateway1, and the other periodod all again are routed
via gateway2. It's strange. In other times when I've made 5 pings to 5
differents sites they are routed alternatively via the two gateways,
which is the expected behaviour. It's strange. It seems to work or
don't work randomly... That's the reason I though squid was the
guilty, but I realized that the balance should work...
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
** RoMaN SoFt / LLFB **
roman@madrid.com
http://pagina.de/romansoft
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://ds9a.nl/2.4Routing/
^ permalink raw reply [flat|nested] 7+ messages in thread