On 7/25/05, alan walters <[EMAIL PROTECTED]> wrote: > I know this discussion is going on a bit. But I was wondering > If we really think it is practical using the method we are trying. > > With a basic round robin configured on the firewall. The web servers can > be configured to use there own software to manage there own Virtual > ipaddresses.
This complicates matters. I dont like. > That will allow anyone to use simple or complicated setups and be os > independent. > > The example would be where we use ucarp on our web servers to manage > there Virtual IP's then if one goes down the other IP just gets migrated > to another server. > > We manage this ucarp on an management network so there is no traffic on > our dmz zone other than the required traffic. > > If pfsense can round robin to this vip pool then all is fine in a > failure. > Unless there is some flashy cunning thing that bsd can do that I am > missing. We will have a monitoring daemon that checks a servers heartbeat. If the server goes down for some reason its taken out of the pf rules table that controls load balancing. Its quite simple, elegant and doesnt require more stuff running on the server that we are redirecting to. Requring a operator to manage another setup of virtual ip's is not necessary for this task. Scott --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
