On 03/15/2016 05:54 PM, Eddie wrote:
> Hi,
> 
> Playing around with setting up two outgoing connections.  One being my 
> normal ISP via a cable modem.  The other an outbound VPN.  The idea, 
> eventually, is to route only certain packets, via Mangle rules out 
> through the VPN.  After setting up the 2 entries in the Providers file, 
> I see that the Routing rules ends with a table called "balance".
> 
> Is there a way to configure the Providers so that all packets, that 
> aren't routed via a specific rtrule, to only use the ISP connection.  
> Currently, I've added a catch-all rtrule that does this ahead of "balance".
> 
> I've tried various combinations of "track", "balance", and "loose" in 
> the provider file, but I either end up with the "balance" Routing rule 
> or I don't have the automatically generated rules that force any 
> incoming traffic back down the interface it arrived on.
> 
> I'm guessing it's a fairly simple configuration that I've overlooked.
> 

Use 'primary' (or 'balance', if your version of Shorewall doesn't
support the 'primary' option for the ISP interface, and 'fallback' for
the VPN.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Transform Data into Opportunity.
Accelerate data analysis in your applications with
Intel Data Analytics Acceleration Library.
Click to learn more.
http://pubads.g.doubleclick.net/gampad/clk?id=278785231&iu=/4140
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to