I would set up the two ISP balance. eth0 - ISP1 - x.y.w.80/29 eth1 - LAN - 10.0.0.0/24 eth2 - ISP2 - 192.168.1.0/24 I made everything according to FAQ32, ip route commands and in shorewall INTERFACES file net to eth0, net to eth2, in shorewall MASQ file eth0 to eth1, eth2 to eth1. On the Linux box the balancing is perfect. The SQUID is correctly working with LAN clients; their balancing is correct, too. However, the MASQUERADING does not work. In /var/log/messages file I find the following: "MASQUERADE: Route sent us somewhere else" Please anybody help me. Thanks.
This is like phoning your doctor saying it hurts here, here and here, fix me.... Please see http://shorewall.net/support.htm OTOH https://bugzilla.netfilter.org/cgi-bin/bugzilla/show_bug.cgi?id=144 is what you may of ran into.. Jerry ----- Original Message ----- From: "psw" <psw@freemail.hu> To: <Shorewall-users@lists.shorewall.net> Sent: Friday, July 30, 2004 06:18 Subject: [Shorewall-users] TWO ISP - MASQUERADE> > I would set up the two ISP balance. > > > eth0 - ISP1 - x.y.w.80/29 > eth1 - LAN - 10.0.0.0/24 > eth2 - ISP2 - 192.168.1.0/24 > > > I made everything according to FAQ32, ip route commands and > in shorewall INTERFACES file net to eth0, net to eth2, > in shorewall MASQ file eth0 to eth1, eth2 to eth1. > > On the Linux box the balancing is perfect. > The SQUID is correctly working with LAN clients; > their balancing is correct, too. > > However, the MASQUERADING does not work. > > In /var/log/messages file I find the following: > > "MASQUERADE: Route sent us somewhere else" > > > Please anybody help me. > > Thanks. > _______________________________________________ > Shorewall-users mailing list > Post: Shorewall-users@lists.shorewall.net > Subscribe/Unsubscribe:https://lists.shorewall.net/mailman/listinfo/shorewall-users> Support: http://www.shorewall.net/support.htm > FAQ: http://www.shorewall.net/FAQ.htm
psw wrote:> I would set up the two ISP balance. > > > eth0 - ISP1 - x.y.w.80/29 > eth1 - LAN - 10.0.0.0/24 > eth2 - ISP2 - 192.168.1.0/24 > > > I made everything according to FAQ32, ip route commands and > in shorewall INTERFACES file net to eth0, net to eth2, > in shorewall MASQ file eth0 to eth1, eth2 to eth1. > > On the Linux box the balancing is perfect. > The SQUID is correctly working with LAN clients; > their balancing is correct, too. > > However, the MASQUERADING does not work. > > In /var/log/messages file I find the following: > > "MASQUERADE: Route sent us somewhere else" >Check the netfilter list archives -- I recall that message being discussed extensively there. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net