[CentOS] Not firewall, but what?

Tue May 11 13:32:34 UTC 2010
Jussi Hirvi <listmember at greenspot.fi>

> Jussi Hirvi wrote:
>> But I have found no mention of this specific dual-bridge
>> problem I have: that ip traffic goes in ok through any physical nic to
>> the dom0 or domUs, but all replies are routed to only one nic (the
>> default gateway). (I verified this with tcpdump.)

On 11.5.2010 16.08, Les Mikesell wrote:
> That's not xen or bridge related.  Unless you do policy-based routing, packets
> always follow the destination route regardless of where the input was received.
>    That's a feature, not a bug.

Ok. But this error does not occur on my other CentOS 5 box (mailserver, 
non-xen) which also has 2 nics for 2 public ip segments. There input-nic 
is always = outputnic. And I have done nothing special to achieve this 
(pure "linux magic"). That's why I "blame" bridges - they are the most 
notable difference between these two machines.



- Jussi

-- 
Jussi Hirvi * Green Spot
Topeliuksenkatu 15 C * 00250 Helsinki * Finland
Tel. +358 9 493 981 * Mobile +358 40 771 2098 (only sms)
jussi.hirvi at greenspot.fi * http://www.greenspot.fi