Re: Multi-Homed BGP - Shorewall & FRR
Red Baron <[email protected]> Wed, 26 Apr 2023 18:25:16 -0500
| Newsgroups | gmane.comp.security.shorewall |
|---|---|
| Message-ID | <CADR8DhOjrTa-o-8P+Mgcgv4jrgFR_3Q8U-rrt4r_zW-hwPN-8g@mail.gmail.com> |
I did attempt to install multi-isp, using mark columns & track options as such: ISP1 1 1 - eno1 $GW1 track ISP2 2 2 - eno2 $GW2 track I Also have "USE_DEFUALT_RT=Yes" this failed to work. I then replaced the mark columns in the providers file with "-", and reset, but that too failed. I think I want to disable all shorewall routing management. If I do a shorewall clear, then restart FRR, the interfaces work as expected. Any suggestions on how to best prevent shorewall from altering routing tables? I assumed that removing the providers was enough, but I must be missing something else. On Wed, Apr 26, 2023 at 5:57 PM Justin Pryzby <[email protected]> wrote: > On Wed, Apr 26, 2023 at 05:45:15PM -0500, Red Baron wrote: > > I don't know if this is something that I should attempt to configure > within > > shorewall (multi-ISP setup and conntrack) or if there is a better way to > > handle this via FRR. > > I don't know anything about FRR, but it sounds like you should use the > multi-isp setup. I don't think it has anything to do with conntack, > though. > > > _______________________________________________ > Shorewall-users mailing list > [email protected] > https://lists.sourceforge.net/lists/listinfo/shorewall-users >