Today, Paul Lussier gleaned this insight:

> >Yea, that's what I was trying to describe as possible in the paragraph
> >below.  I just had a hard enough time doing the 1st picture.  The only
> >issue would be if you're doing any kind of logging on the firewall,
> >although I suppose (I haven't set up LVS, don't know if it can do
> >this) you could do the logging to something on the internal LAN, so
> >when the 1st FW failed, the 2nd could pick it up, & keep logging.  Or,
> >you just accept that you could lose your log on the primary firewall
> >if it goes down, and use the log on the second one.
> 
> Well, actually, I've realized you can't use LVS for this.  LVS is really more 
> Load Balancing oriented and relies upon ethernet for node-status tracking.
> This essentially removes LVS from the picture, and therefore Pirahna or 
> UltraMonkey. Kimberlite is perfect for this scenario, since it has triple 
> redundancy in this area in the form of:

But you can use heartbeat, which is part of the Linux-HA project.


-- 
---------------------------------------------------------------
Derek D. Martin              |  Unix/Linux Geek
[EMAIL PROTECTED] |  [EMAIL PROTECTED]
---------------------------------------------------------------


**********************************************************
To unsubscribe from this list, send mail to
[EMAIL PROTECTED] with the following text in the
*body* (*not* the subject line) of the letter:
unsubscribe gnhlug
**********************************************************

Reply via email to