On 4/24/06, Sithi <[EMAIL PROTECTED]> wrote: > thanks Mr. Bill > > As you had said, this > > Quote > Does this web site tie it's session authentication to IP address? IE, > if a user comes in using two different source addresses will they get > kicked out? If so, WAN load balancing won't work for you until they > fix the application (tying a session down to the original IP it came > in from doesn't buy you any security and is generally considered bad > practice). > Quote > > could be the reason for frequent disconnection in our work. > > is there any solution, to overcome this situation, if so please provide us > with the details
Not at this time in pfSense. We use round-robin load balancing in 1.0. We may consider doing source-hash load balancing in future versions. > > and also, how we should tell to our Partners (who is hosting that web site > where we do the job) at the other end, to rectify this session > authentication. > > will be grateful to you help, thanking you in advance Their web developers should be able to remove the source IP check from their application. Should be relatively obvious :) --Bill --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]