On Tue, Mar 26, 2002 at 11:13:03PM +0100, Patrick Schaaf wrote: > If you want exchange of connection > state information between two machines, there is no solution implemented > (or planned, as far as I know) for now.
I actually am planning something - but due to the size of the task I want to make sure I can spend full time on this job. I'm still trying to get funding. As soon as funding is clear, I will start implementation. It currently looks like I'll be able to start in mid/end of quarter 2 2002. > There is a multicast based state exchange implemented in the load balancing > implementation found at www.linuxvirtualserver.org. But that's seperate > from the iptables conntracking. yes. I've looked at the code. Their state exchange might work OK for load balacing - but the code can definitely not be used for connection tracking. They have all kinds of heuristics and fixed timeouts independent of the connection state. > best regards > Patrick -- Live long and prosper - Harald Welte / [EMAIL PROTECTED] http://www.gnumonks.org/ ============================================================================ GCS/E/IT d- s-: a-- C+++ UL++++$ P+++ L++++$ E--- W- N++ o? K- w--- O- M+ V-- PS++ PE-- Y++ PGP++ t+ 5-- !X !R tv-- b+++ !DI !D G+ e* h--- r++ y+(*)
