Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 15 Jan 2019 09:48:43 -0500
From:      Matt Garber <matt.garber@gmail.com>
To:        Pete French <petefrench@ingresso.co.uk>
Cc:        freebsd-stable@freebsd.org
Subject:   Re: Any suggestions for a layer 3 load ablancer for 12, as relayd doesnt work anymore
Message-ID:  <0EAFBB2F-859A-4B3D-9CF4-F4343A97285D@gmail.com>
In-Reply-To: <f276b83a-e57b-a9f5-9186-e2b5116f9962@ingresso.co.uk>
References:  <E1gj4tQ-000MGi-0H@dilbert.ingresso.co.uk> <1547491459.1113392.1634330440.3BE6B9CF@webmail.messagingengine.com> <3CD6B22B-B35C-4B9C-BDBA-D2E928435F91@exonetric.com> <f276b83a-e57b-a9f5-9186-e2b5116f9962@ingresso.co.uk>

next in thread | previous in thread | raw e-mail | index | archive | help


> On Jan 15, 2019, at 9:43 AM, Pete French <petefrench@ingresso.co.uk> =
wrote:
>=20
> Thanks for the suggestions - unfortunately both of those (unless I
> misread them) terminate the TCP connection and make a new one to
> the backends. I was after something where I can see the original IP
> address on the socket. Though I could put a procy in front and add
> the headers I suppse, but thats a biut more work as it involves =
changing
> the code.
>=20
> Interested in the apache traffic manager - I hadnt come across that
> one before, tahnks,

Pete,

For what it=E2=80=99s worth, HAProxy has the PROXY protocol for exactly =
the scenario you=E2=80=99re describing; I=E2=80=99ve heard it=E2=80=99s =
very straightforward and powerful to use, although haven=E2=80=99t had =
to use it on any of my HAProxy instances which are primarily doing L7.

=
https://www.haproxy.com/blog/preserve-source-ip-address-despite-reverse-pr=
oxies/


Thanks,
=E2=80=94
Matt Garber




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?0EAFBB2F-859A-4B3D-9CF4-F4343A97285D>