Re: Transparent Firewall with NAT

2007-10-17 Thread François Rousseau
Hummm maybe I misunderstand but that look more like a proxy no? FranC'ois Rousseau On 10/15/07, CC)dric THIBAULT <[EMAIL PROTECTED]> wrote: > Firstly, thanks for your comments, > > 2007/10/12, ropers <[EMAIL PROTECTED]>: > > > > I don't fully understand your email, because some of your sentences

Re: CARP, carpdemote and kernel routing table

2007-05-03 Thread François Rousseau
Hi, I have a very similar issue and I working on a solution with ifstated daemon. You have to remove the route from the routing table when a carp interface goes init or backup. Like that, the OSPF daemon will be able to add is route to the routing table. When a CARP interface come back has Mas

Re: carp, 2 router

2007-04-12 Thread François Rousseau
Well at the end I will have BGP for the upstream provider but this part work fine so I have not talk about it in my last email. I have done a fast schema of my setup: http://step.polymtl.ca/~spock/draft.jpg. The reason I want to use CARP inside is because I want to have a single gateway on my se

carp, 2 router

2007-04-12 Thread François Rousseau
Hi, I have a problem to understand how to dynamically change the route destinate to a carp interface. I have 2 routers, both have 3 NIC. On each router I have: 1 Nic for the upstream 1 Nic for the LAN ( 5 carp, no nat) 1 Nic for inter-router traffic. What I want: If one of my CARP goes in Bac

Re: carp, ospf can't see carp state

2007-04-09 Thread François Rousseau
Hi Claudio, I have double check on my lab and everything work fine for the OSPF part, sorry for my mistake. But at the end, I'm still having the same problem: the server didn't know the right route. OSPF see all the route correctly but the system didn't seem to be updated. If I do "route show"

Re: carp, ospf can't see carp state

2007-04-07 Thread François Rousseau
Hi Claudio, In fact, I'm looking to had a third providers soon (maybe 4-5 weeks) so I will start to use 3 routers. I also want to use OSPF for future expension. I have one interface by router dedicated to inter-router traffic (iBGP, OSPF and of course the data to the other upstream provider) I

Re: carp, ospf can't see carp state

2007-04-07 Thread François Rousseau
But how I'm suppose to annonce the route for the right carp interface? Right now my servers can always reach the router because of the CARP interface but the router can't always reach the servers... If I unplug the cable of my CARP interface (bge2 for example), all traffic from this router (direc

carp, ospf can't see carp state

2007-04-06 Thread François Rousseau
Hi, I'm configuring 2 server to use as a gateway for multihoming. I use: OpenBSD 4.0 stable and OpenBSD 4.0 release OpenBGPD OpenOSPFD CARP for failover I have 2 router with 3 interfaces and 5 carp interfaces by router. interface1 = eBGP with 2 upstream provider interface2 = Link between the