ipfw - natd - squid - 3 Nic's - 1 FBSD 5.1 server and routing question

Olivier Nicole on at cs.ait.ac.th
Mon Aug 4 19:15:57 PDT 2003


> Not only outgoing traffic for squid will be traversing that link, but 
> also the answers to those requests sent out. So even thought your not 
> really interested in the outgoing traffic as such, you have to send it 
> out on that link to get responses back on the same link.

Not always true, and on another hand, when you are multihomed, it
becomes almost impossible to decide what interface the incoming
traffic will come through. You are not responsible of the way others
route the traffic to you (well you have very little leverage on that
at least).

As it was mentionned in the original mail, he had set-up his squid to
use the IP of the second ISP (cable), so hopefully the incoming will
be router through that ISP. It will be even more true if that
interface is not advertised on the other interface.

Olivier


More information about the freebsd-net mailing list