[PATCH] SNAT anyip connections

Peter Warasin peter at endian.com
Wed Jun 24 15:07:14 UTC 2009


Hi david

wlanmac wrote:
> Seems to work great. I'll keep testing a bit with it. I have it now in
> my current development branch, which I will release in the next couple

great, thank's!


> weeks. It has major changes, including direct 802.1Q support so a single
> chilli can control your entire VLAN trunk. The configuration system

hey, that sounds really great. So with that option and a vlan capable
switch clients would be completely separated, would they?


> changed drastically in that the cmdline.o (generated by gengetopt) will
> only be linked into a new utility "chilli_opt". This new util is
> responsible for parsing, resolving, and building the runnable
> configuration. It's launched by chilli on startup, but can also be ran
> offline to update the configuration of a running chilli. Since chilli

That's interesting. Could it be used to "pause" a running chilli?
I have chilli's running in HA environments (keepalived). The chillis on
slaves should not answer to requests, thus i filter on those systems
with ebtables for now. A possibility to externally set chilli on hold
would do the same job, but better so i think.


> forks the utility, it'll never stop and wait for DNS resolution. The
> "tap" interface have also been rewritten a bit such that a chilli tap
> interface can be added to a bridge... to run chilli on a more pure
> layer2 network. 

Very cool.

Can't wait for the release :)


Thank's

peter

-- 
:: e n d i a n
:: open source - open minds

:: peter warasin
:: http://www.endian.com   :: peter at endian.com



More information about the Chilli mailing list