On 4/30/2014 10:35 AM, Marcello Giordano wrote:
> Hi,
> 
> Thanks for your answer!
> 
> a) I tried re-configuring everything to use USE_DEFAULT_RT=Yes.
> 
> Now, by default, all traffic goes through the vpn.
> I put something like this in the routing rules
> 
> 998 from all iif lo lookup Coop
> 
> so that all traffic from the $FW goes through the Coop provider on wlan1.
> 
> But this makes the marking of packets for user rtorrent (in tcrules)
> useless, because I never get to
> match these rules
> 
> 10000:  from all fwmark 0x1/0xff lookup Coop
> 10001:  from all fwmark 0x2/0xff lookup VPN
> 
> 
> sorry if I am misunderstanding something.
> 

You should specify 'balance' for the wlan1 provider and 'fallback'
 for the VPN provider. And get rid of the 998 rule that you added.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
"Accelerate Dev Cycles with Automated Cross-Browser Testing - For FREE
Instantly run your Selenium tests across 300+ browser/OS combos.  Get 
unparalleled scalability from the best Selenium testing platform available.
Simple to use. Nothing to install. Get started now for free."
http://p.sf.net/sfu/SauceLabs
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to