Re: pf load balancing

2005-09-22 Thread Lucas
i tried with it, but it works if i have a machine in the middle. like this: GW2 LAN - obsd (load balancer with route-to) -- GW1 WAN

Re: pf load balancing

2005-09-22 Thread Tihomir Koychev
Hi Can you post your pf.conf and output from ifconfig? --- Lucas [EMAIL PROTECTED] wrote: i tried with it, but it works if i have a machine in the middle. like this: GW2 LAN - obsd (load balancer with

Re: pf/carp for redundant production use

2005-09-22 Thread j knight
Neil wrote: Ok guys. I will do it tonight once I reach home. I will also send my pf.conf file. Also, does it matter since I have different interfaces on FW1 and FW2? FW1, xl0, fxp0 and fxp1 FW2: rl0, fxp0 and ne3 You're using 'set state-policy if-bound' so yes, that does matter. Remove that

Re: pf/carp for redundant production use

2005-09-22 Thread Neil
Yup that did the fix for the inbound. Now, I tried connecting to an ssh server from the internal machine to the external machine running openssh and i disconnected the cable, however, the ssh session was not able to recover. What should I change in my pf.conf configuration. Thanks for the

H.323 from behind pf

2005-09-22 Thread Hutchison, Bill
Hello, Is anyone successfully moving H.323 traffic through a pf gateway by some proxy or other means? I've read how H.323 with NAT is ugly, but can't believe there are not more people needing to move this traffic through pf gateways. I have looked at nmproxy 1.2, but it will not work on OpenBSD

Re: pf load balancing

2005-09-22 Thread Karl O. Pinc
On 09/22/2005 04:51:37 PM, Lucas wrote: i have done it this way, but still have some problems: I am sorry. I'm afraid I may not have understood your initial diagram. (I like to see the machines, with each interface and it's assigned IP, and the network number/netmask of the networks

Re: pf load balancing

2005-09-22 Thread Lucas
i have done it this way, but still have some problems: 10.1.1.1 (M) |---gw1 - | LAN--| || - WAN |---gw2 - | (10.1.1.1) (B) gw2 just have a backup carp interface gw1 is carp master with 10.1.1.1 nat is

stalled connections between pf servers

2005-09-22 Thread Steve Witucke
I am new to using PF, long time user of IPFilter. I switched to OpenbSD/PF last week to setup a system to provide me with redundancy for my outbound connections. The setup consists of 2 machines, each connected to a different internet connection, and serving two internal subnets. (See ASCII