From owner-freebsd-pf@FreeBSD.ORG Fri Mar 30 05:14:49 2007 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id E1D9616A402 for ; Fri, 30 Mar 2007 05:14:49 +0000 (UTC) (envelope-from unixtools@hotmail.com) Received: from bay0-omc3-s14.bay0.hotmail.com (bay0-omc3-s14.bay0.hotmail.com [65.54.246.214]) by mx1.freebsd.org (Postfix) with ESMTP id CE5B313C459 for ; Fri, 30 Mar 2007 05:14:49 +0000 (UTC) (envelope-from unixtools@hotmail.com) Received: from hotmail.com ([65.54.250.37]) by bay0-omc3-s14.bay0.hotmail.com with Microsoft SMTPSVC(6.0.3790.2668); Thu, 29 Mar 2007 22:02:49 -0700 Received: from mail pickup service by hotmail.com with Microsoft SMTPSVC; Thu, 29 Mar 2007 22:02:49 -0700 Message-ID: Received: from 65.54.250.200 by by115fd.bay115.hotmail.msn.com with HTTP; Fri, 30 Mar 2007 05:02:49 GMT X-Originating-IP: [67.81.51.9] X-Originating-Email: [unixtools@hotmail.com] X-Sender: unixtools@hotmail.com In-Reply-To: <55e8a96c0703271009o19bcb3dfp29929357516292f9@mail.gmail.com> From: "Sunil Sunder Raj" To: bill.marquette@gmail.com, dudu.meyer@gmail.com Date: Fri, 30 Mar 2007 05:02:49 +0000 Mime-Version: 1.0 Content-Type: text/plain; format=flowed X-OriginalArrivalTime: 30 Mar 2007 05:02:49.0487 (UTC) FILETIME=[A9E5B1F0:01C77288] Cc: freebsd-pf@freebsd.org Subject: Re: How to balance my own outgoing traffic? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 30 Mar 2007 05:14:50 -0000 Hi, Load balancing outgoing traffic will not be a problem in any setup. But the biggest problems you will face is ssh sessions and websites like rapidshare. You will start the session with 1 ip address and suddenly the round robin rule will take your traffic out with another ip address. This will cause problems when communicating with an ssh server and servers like rapidshare which generate download tickets based on source ip address. Sunil Sunder Raj http://daemon.in >From: "Bill Marquette" >To: "Eduardo Meyer" >CC: freebsd-pf@freebsd.org >Subject: Re: How to balance my own outgoing traffic? >Date: Tue, 27 Mar 2007 12:09:52 -0500 > >On 3/27/07, Eduardo Meyer wrote: >>Yes, round-robin will do. My problem is how to do this, I have tried >>the following kiind of approach: >> >>pass out on $ext_if route-to { ($ext_if1 $ext_gw1), ($ext_if2 >>$ext_gw2) } round-robin proto tcp from $myown to any flags S/SA >>modulate state > >route-to tends to work better inbound on your internal interfaces. > >pass in on $int_if route-to { ($ext_if1 $ext_gw1), ($ext_if2 >$ext_gw2) } round-robin proto tcp from $myown to any flags S/SA >modulate state > >> >>However I can not, say, route-to $ext_gw2 traffic from $ext_ifi1's IP >>address. I need to combine it with NAT, right? >> >>How to do this is what I am confused. >>_______________________________________________ >>freebsd-pf@freebsd.org mailing list >>http://lists.freebsd.org/mailman/listinfo/freebsd-pf >>To unsubscribe, send any mail to "freebsd-pf-unsubscribe@freebsd.org" >> >_______________________________________________ >freebsd-pf@freebsd.org mailing list >http://lists.freebsd.org/mailman/listinfo/freebsd-pf >To unsubscribe, send any mail to "freebsd-pf-unsubscribe@freebsd.org" _________________________________________________________________ i'm making a difference. Make every IM count for the cause of your choice. Join Now. http://clk.atdmt.com/MSN/go/msnnkwme0080000001msn/direct/01/?href=http://im.live.com/messenger/im/home/?source=hmtagline