public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
From: Jeff Rooney <jtrooney@iyd.com>
To: gentoo-server@lists.gentoo.org
Subject: Re: [gentoo-server] Disable ARP
Date: Tue, 16 Oct 2007 09:51:44 -0500	[thread overview]
Message-ID: <4714D000.1000405@iyd.com> (raw)
In-Reply-To: <471476EC.2030206@vanalteren.nl>

[-- Attachment #1: Type: text/plain, Size: 1634 bytes --]

Ramon van Alteren wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Jeff Rooney wrote:
>   
>> Both methods appear to work as I hoped.
>>     
>
> Good.
>
>   
>> Ramon: you where exactly right, I was following some documentation sent
>> over with some load balancers that I am experimenting with. Unfortunatly
>> their tech staff didn't have any real options for us other than blocking
>> the arp responses via ebtables. 
>>     
>
> Mmmm interesting tech support, out of curiosity what loadbalancers are
> you using ?
>   
Currently I am working with the load master series from Kemp 
Technologies. I am also going to be trying Coyote Point as well, we 
still haven't decided which route to take.
>   
>> Not sure why I didn't think about using
>> the dummy interface instead of the loopback...guess its just been that
>> sort of day for me =)
>>     
>
> I have them too (those days), trying to ram the square block through the
> round hole.... In some cases it even works :-)
>
>   
>> Thanks again for your help Ramon and RijilV.
>>     
>
> You're welcome.
> Word of warning: If you lose the noarp option on one of the real-servers
> you will see very weird erratic behaviour which can be hard to debug.
> Depending on the load you push through the loadbalancer the realserver
> which sends an arp will die immediately or slowly whilst generating
> weird bugs in your app.
>
> Best way to check: login with ssh on the vip
>   
Thanks for the heads up...I am actually probably still going to end up 
running ebtables to filter the outbound arp responses from the vip 
addresses just to be safe.

Thanks again.
--
Jeff

[-- Attachment #2: Type: text/html, Size: 2364 bytes --]

      reply	other threads:[~2007-10-16 15:04 UTC|newest]

Thread overview: 8+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2007-10-15 21:13 [gentoo-server] Disable ARP Jeff Rooney
2007-10-15 21:16 ` Alex Efros
2007-10-15 21:22   ` Jeff Rooney
2007-10-15 21:24   ` RijilV
2007-10-15 21:32 ` Ramon van Alteren
2007-10-15 22:11   ` Jeff Rooney
2007-10-16  8:31     ` Ramon van Alteren
2007-10-16 14:51       ` Jeff Rooney [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=4714D000.1000405@iyd.com \
    --to=jtrooney@iyd.com \
    --cc=gentoo-server@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox