On Wed, 15 Aug 2007 09:55:06 am Tom Eastep wrote: > James Gray wrote: > > Tom Eastep wrote: > >> James Gray wrote: > >>> I thought I followed all the docs but I feel like I've missed something > >>> really basic. > >> > >> Like maybe Shorewall FAQ 57? > >> > >> -Tom > > > > Thanks Tom. I really appreciate the fast response :) I've been doing > > most of the config offline using the 3.x PDF documentation, and it > > doesn't lay it out as plainly as FAQ 57. My bad. > > > > I replaced "loose" with "balance" in the providers options. However, > > after restarting shorewall (sudo service shorewall restart) the routing > > totally wigged out. Traffic was going out on the two interfaces > > (ISP1/2) but if data was coming back, it wasn't reaching the clients. I > > reverted to the old config and all was good (all traffic on one > > interface). > > Your tcrules are so completely broken (see my other post) that this > isn't surprising.
:P Yep - I've reversed them (but am leaving them commented out for now) and re-read the documentation. I've also fixed the MARK_IN_FORWARD_CHAIN in shorewall.conf. > I suggest that you totally forget traffic shaping for the time being and > get multi-ISP working the way that you want it. Then *and only then* > should you add traffic shaping. Yup. I'm coming from a Cisco background and whilst I understand TCP/IP networking, they way all this shaping and routing stuff happens in Linux is new. I'm already on the road you have suggested - keep it simple, get the multi-ISP setup working, then worry about traffic shaping. I really appreciate your help. Do you have a paypal account for donations? (seriously) Cheers, James
smime.p7s
Description: S/MIME cryptographic signature
------------------------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
