DHCP server failover behind relay

Sten Carlsen stenc at s-carlsen.dk
Thu Sep 6 20:41:19 UTC 2012


On 06/09/12 22:12, Vadym Abramchuk wrote:
> 2012/9/6 Glenn Satchell <glenn.satchell at uniq.com.au 
> <mailto:glenn.satchell at uniq.com.au>>
>
>     That's pretty dumb, but I guess you have to live with it. Saw the
>     other
>     reply - 40 subnets is too many to provision 40 relay systems, so
>     scratch
>     that idea.
>
>     So that leaves the iptables -j TEE solution. That looks like it
>     would be ok.
>      Not ideal, but satisfactory.
>
>     My guess is the next network equipment refresh won't include those
>     Dell
>     switches :)
>
>
> Just tried -j TEE and got the local loop with two servers copying 
> packets to each other :(.
> Any idea on how to avoid this? TTL check looks weird.
You could possibly insert a check for sender address(=other server) 
before that rule and accept the packet  before retransmitting to the 
other server?
>
> -- 
> wbr,
> Vadym Abramchuk
>
>
> _______________________________________________
> dhcp-users mailing list
> dhcp-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/dhcp-users

-- 
Best regards

Sten Carlsen

No improvements come from shouting:

        "MALE BOVINE MANURE!!!"

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/dhcp-users/attachments/20120906/513f2a0b/attachment.html>


More information about the dhcp-users mailing list