[NTLUG:Discuss] Connections using aliased IP addresses instead ofthe primary one

Neil Aggarwal neil at JAMMConsulting.com
Mon Aug 4 11:53:14 CDT 2008


Hello all:

This is strange.  

I removed the GATEWAY specification from 
ifcfg-eth0:0 and ifcfg-eth0:1 (But left it in
for ifcfg-eth0) and now I am not seeing anything
hitting the firewall anymore.

First off, I don't understand why that is working
since the IP address for eth0 is on a different
subnet than eth0:0 and eth0:1.  Since they are
on different subnets, they have different gateways.
I can still http to the new IP addresses
and it seems to work fine.

Next, how did that make a difference in the
configuration of the machine so the outbound
connections are no longer using the new IP addresses?

Any insight is helpful.

Thanks,
	Neil

--
Neil Aggarwal, (832)245-7314, www.JAMMConsulting.com
Eliminate junk email and reclaim your inbox.
Visit http://www.spammilter.com for details.  

> I have a machine where I set up two IP aliases
> on eth0 by copying 
> /etc/sysconfig/network-scripts/ifcfg-eth0
> to 
> /etc/sysconfig/network-scripts/ifcfg-eth0:0
> /etc/sysconfig/network-scripts/ifcfg-eth0:1
> 
> and changing the relevant IP info for new IP address.
> 
> Unfortunately, now I am seeing outbound connections
> failing at my firewall from services like NTP, etc. 
> since they are now using a source address
> from one of the aliased IP addresses instead of the
> original eth0 IP which is allow through the firewall.




More information about the Discuss mailing list