Am Montag, 13. Oktober 2008 16:55 schrieb Lars Marowsky-Bree: > On 2008-10-13T15:14:58, Lars Ellenberg <[EMAIL PROTECTED]> wrote: > > > Nice idea. What happens if conntrackd is activated on a cluster and a > > > failover occures? Shouldn't the application send a RST on its own? > > > Anybody tried this? > > > > forwarded connections will survive transparently. > > That might be a good reason for a separate "conntrackd" RA, as it'd be > cool if we could do stateful firewall fail-over out of the box, and then > build the "tickle" extension on top.
Perhaps conntrackd ba be used in the online mode so the kernel connection tables are always in sync between both nodes. So no master/slave RA nescessary. A multistate RA is only needed if the conntrackd is used in offline more so conection tables received from the other node have to be published into the kernel during the failover. Jsut my 2 cents. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn Registergericht: Amtsgericht München HRB 114375 Geschäftsführer: Günter Jurgeneit, Hubert Martens --- PGP Fingerprint: F919 3919 FF12 ED5A 2801 DEA6 AA77 57A4 EDD8 979B Skype: misch42 _______________________________________________________ Linux-HA-Dev: [email protected] http://lists.linux-ha.org/mailman/listinfo/linux-ha-dev Home Page: http://linux-ha.org/
