From owner-freebsd-stable@FreeBSD.ORG Fri Jul 7 07:17:19 2006 Return-Path: X-Original-To: freebsd-stable@freebsd.org Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 4E30E16A4DE for ; Fri, 7 Jul 2006 07:17:19 +0000 (UTC) (envelope-from nvass@teledomenet.gr) Received: from matrix.teledomenet.gr (dns1.teledomenet.gr [213.142.128.1]) by mx1.FreeBSD.org (Postfix) with ESMTP id 9099543D53 for ; Fri, 7 Jul 2006 07:17:17 +0000 (GMT) (envelope-from nvass@teledomenet.gr) Received: from iris ([192.168.1.71]) by matrix.teledomenet.gr (8.12.10/8.12.10) with ESMTP id k677HGEY004782; Fri, 7 Jul 2006 10:17:16 +0300 From: Nikos Vassiliadis To: freebsd-stable@freebsd.org Date: Fri, 7 Jul 2006 10:14:29 +0300 User-Agent: KMail/1.9.1 References: <44AD688A.6050408@nikiforov.ru> In-Reply-To: <44AD688A.6050408@nikiforov.ru> MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: <200607071014.29700.nvass@teledomenet.gr> Cc: Anton Nikiforov Subject: Re: carp+pfsync+freevrrpd+jail X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 07 Jul 2006 07:17:19 -0000 On Thursday 06 July 2006 22:46, Anton Nikiforov wrote: > Dear all. [snip] > > That means that in case some service (provided by jail managed by > freevrrpd) will be accessed from outside - i cannot be sure what host > will answer the request. > You have vrrp on jails and carp on the host system? That's probably not a good idea, they both use the same ether-type. Who is gonna get the incoming packet? carp or freevrrpd? both? I guess both. Who is gonna reply? Do you know if a vrrp packet confuses carp or conversely? nik:0:~$ grep carp /etc/protocols carp 112 CARP vrrp # Common Address Redundancy Protocol