LVS/NAT模型内网监听不到http请求包!
LVS/NAT模型
所有防火墙已经关闭,RealServer上的web服务器已经开启,互相都能ping通!
Director Server 配置:
Director Server 外网IP = 192.168.1.100 ==> VIP = 192.168.1.100
Director Server 内网IP = 192.168.1.1 ==> DIP = 192.168.1.1
ipvsadm -C
ipvsadm -A -t 192.168.1.100:80 -s rr
ipvsadm -a -t 192.168.1.100:80 -r 192.168.1.2:80 -m
ipvsadm -a -t 192.168.1.100:80 -r 192.168.1.3:80 -m
[root@Director ~]# ipvsadm -L -n
IP Virtual Server version 1.2.1 (size=4096)
Prot LocalAddress:Port Scheduler Flags
-> RemoteAddress:Port Forward Weight ActiveConn InActConn
TCP 192.168.1.100:80 rr
-> 192.168.1.2:80 Masq 1 0 1
-> 192.168.1.3:80 Masq 1 0 1
Real Server 配置:
Real Server IP = 192.168.1.2 ==> RIP = 192.168.1.2 gateway = 192.168.1.1
Real Server IP = 192.168.1.3 ==> RIP = 192.168.1.3 gateway = 192.168.1.1
从外网假设IP为192.168.1.10去请求 192.168.1.2/3上的web服务器都能成功,已经保证基本环境OK!
问题:
从外网假设IP为192.168.1.10去请求,去请求VIP=192.168.1.100,在RS上监听内网网卡,已经有HTTP的SYN包发出到RS(192.168.1.2/3)去,但是在RS(192.168.1.2/3)监听,却收不到包!
如果在Director Server上去请求内网的服务器RS(192.168.1.2/3),在RS(192.168.1.2/3)能监听到包!
seanzhau
周五, 2012-11-02 08:59
Permalink
你这IP搞得很混乱,建
你这IP搞得很混乱,建议外网一个段,内网另一个段。。在lvs上面使用ip a要能看到网关IP,lvs上面还要做路由转发,将内网过来的所有信息转发到外网的IP
Anonymous (没有被验证)
周三, 2014-03-05 19:19
Permalink
PaEZvZKSnpEfglOTlw
IMHO you've got the right anwsre!
Anonymous (没有被验证)
周四, 2014-03-06 04:20
Permalink
sjeVKCeKunAAIfeNvF
People nomlalry pay me for this and you are giving it away!
Anonymous (没有被验证)
周四, 2014-06-05 14:01
Permalink
vpSwzAyuPSFKfWLxqp
click here to get started car insurance quotes cheaper home ins website