On Wed, 15 Aug 2007 09:55:06 am Tom Eastep wrote:
> James Gray wrote:
> > Tom Eastep wrote:
> >> James Gray wrote:
> >>> I thought I followed all the docs but I feel like I've missed something
> >>> really basic.
> >>
> >> Like maybe Shorewall FAQ 57?
> >>
> >> -Tom
> >
> > Thanks Tom.  I really appreciate the fast response :)  I've been doing
> > most of the config offline using the 3.x PDF documentation, and it
> > doesn't lay it out as plainly as FAQ 57.  My bad.
> >
> > I replaced "loose" with "balance" in the providers options.  However,
> > after restarting shorewall (sudo service shorewall restart) the routing
> > totally wigged out.  Traffic was going out on the two interfaces
> > (ISP1/2) but if data was coming back, it wasn't reaching the clients.  I
> > reverted to the old config and all was good (all traffic on one
> > interface).
>
> Your tcrules are so completely broken (see my other post) that this
> isn't surprising.

:P  Yep - I've reversed them (but am leaving them commented out for now) and 
re-read the documentation.  I've also fixed the MARK_IN_FORWARD_CHAIN in 
shorewall.conf.

> I suggest that you totally forget traffic shaping for the time being and
> get multi-ISP working the way that you want it. Then *and only then*
> should you add traffic shaping.

Yup.  I'm coming from a Cisco background and whilst I understand TCP/IP 
networking, they way all this shaping and routing stuff happens in Linux is 
new.  I'm already on the road you have suggested - keep it simple, get the 
multi-ISP setup working, then worry about traffic shaping.

I really appreciate your help.  Do you have a paypal account for donations? 
(seriously)

Cheers,

James

Attachment: smime.p7s
Description: S/MIME cryptographic signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >>  http://get.splunk.com/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to