Date: Wed, 12 Dec 2001 10:20:24 +0200 From: Ruslan Ermilov <ru@FreeBSD.org> To: freebsd-questions@jrv.org Cc: questions@FreeBSD.org Subject: Re: IP aliases & routes Message-ID: <20011212102024.G11552@sunbay.com> In-Reply-To: <200112110318.fBB3IdOu010791@bigtex.jrv.org> References: <200112110318.fBB3IdOu010791@bigtex.jrv.org>
next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, Dec 10, 2001 at 09:18:39PM -0600, freebsd-questions@jrv.org wrote: > I have a FreeBSD server on an Ethernet with two gateways to the > outside world. I would like to use gateway A for upstream HTTP > traffic from squid and gateway B for everything else. In other words, > the default route should point to B, except for the squid's upstream > socket, which should use A. > > What I did was create a new private subnet (10.1.1/24) that both the > server and gateway A can access via an IP alias. Squid is told to use > 10.1.1.3 as its upstream address. Other applications use the normal > IP address. The idea is that one subnet uses gateway A as the default > gateway and the other subnet uses gateway B and that choosing the > address of outbound socket via bind(2) chooses how that application > reaches the Internet. > > The question is how to tell the FreeBSD (4.4-stable) server that > gateway A can be used as a default route for 10.1.1/24. There is > already a default route for the normal IP address and I can't seem to > get the route command to let me create a default route for the alias > to use: > > $ route add default 10.1.1.2 > route: writing to routing socket: File exists > add net default: gateway 10.1.1.2: File exists. > > How do I add this second default route? There is no conflict between > the two defaults: every possible local IP address belongs to only of > the two subnets (and can match only one default). > You can do this with IPFIREWALL_FORWARD feature. Cheers, -- Ruslan Ermilov Oracle Developer/DBA, ru@sunbay.com Sunbay Software AG, ru@FreeBSD.org FreeBSD committer, +380.652.512.251 Simferopol, Ukraine http://www.FreeBSD.org The Power To Serve http://www.oracle.com Enabling The Information Age To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20011212102024.G11552>