On 4/24/06, Sithi <[EMAIL PROTECTED]> wrote:
> thanks Mr. Bill
>
> As you had said, this
>
> Quote
> Does this web site tie it's session authentication to IP address?  IE,
> if a user comes in using two different source addresses will they get
> kicked out?  If so, WAN load balancing won't work for you until they
> fix the application (tying a session down to the original IP it came
> in from doesn't buy you any security and is generally considered bad
> practice).
> Quote
>
> could be the reason for frequent disconnection in our work.
>
> is there any solution, to overcome this situation, if so please provide us
> with the details

Not at this time in pfSense.  We use round-robin load balancing in
1.0.  We may consider doing source-hash load balancing in future
versions.

>
> and also, how we should tell to our Partners (who is hosting that web site
> where we do the job) at the other end, to rectify this session
> authentication.
>
> will be grateful to you help, thanking you in advance

Their web developers should be able to remove the source IP check from
their application.  Should be relatively obvious :)

--Bill

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to