Ryan,
I'm doing the NAT out of the box at ASA5505 firewall so that rule i think is 
not necessary.
David,
The ASA doing the nat only for the VIP.The real IP's of the boxes doesn't have 
access to the outside world.
 
In the arp table of ASA i can see both ip's (real/virtual) with the same mac 
address.I put the arp updates on ASA to 20 sec but nothing

--- Στις Παρ., 08/05/09, ο/η David Lang <[email protected]> έγραψε:


Από: David Lang <[email protected]>
Θέμα: Re: [Linux-HA] Fw: Arp issues
Προς: "General Linux-HA mailing list" <[email protected]>
Ημερομηνία: Παρασκευή, 8 Μάιος 2009, 22:34


do the rules on the ASA allow the real interfaces of the boxes to get to the 
Internet, or only the VIP?

David Lang

On Fri, 8 May 2009, Ryan Thomson wrote:

> Date: Fri, 8 May 2009 10:48:14 -0700
> From: Ryan Thomson <[email protected]>
> Reply-To: General Linux-HA mailing list <[email protected]>
> To: General Linux-HA mailing list <[email protected]>
> Subject: Re: [Linux-HA] Fw:  Arp issues
> 
> You probably want an RA that will implement a rule like this:
>
> /sbin/route add default gw xxx.xxx.xxx.xxx eth0:0
>
> Where xxx.xxx.xxx.xxx is your NAT gateway.
>
> Depending on your configuration, that may or may not work out-of-the-box for 
> you, but I think it's more or less what you're after.
>
> --Ryan
>
> Siakoulis Yiannis wrote:
>> Hello Ryan,
>>
>> All ip's (real,virtual) are on same subnet.First think is about routing 
>> problem but when i put the route 192.168.1.0 dev eth0:0 in routing table 
>> apears as eth0.Can you give me an example of what you mean???
>>
>> Thanks in advance.
>>
> _______________________________________________
> Linux-HA mailing list
> [email protected]
> http://lists.linux-ha.org/mailman/listinfo/linux-ha
> See also: http://linux-ha.org/ReportingProblems
>
_______________________________________________
Linux-HA mailing list
[email protected]
http://lists.linux-ha.org/mailman/listinfo/linux-ha
See also: http://linux-ha.org/ReportingProblems



      
___________________________________________________________ 
Χρησιμοποιείτε Yahoo!; 
Βαρεθήκατε τα ενοχλητικά μηνύματα (spam); Το Yahoo! Mail 
διαθέτει την καλύτερη δυνατή προστασία κατά των ενοχλητικών 
μηνυμάτων http://login.yahoo.com/config/mail?.intl=gr 
_______________________________________________
Linux-HA mailing list
[email protected]
http://lists.linux-ha.org/mailman/listinfo/linux-ha
See also: http://linux-ha.org/ReportingProblems

Reply via email to