Advertisement
Guest User

Config varnish + iptables

a guest
Jan 28th, 2011
428
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.97 KB | None | 0 0
  1. /etc/varnish/default.vcl
  2. ------------------------
  3.  
  4. backend default {
  5. .host = "127.0.0.1";
  6. .port = "8080";
  7. }
  8.  
  9. backend srv01 {
  10. .host = "x.x.x.x";
  11. .port = "80";
  12. }
  13.  
  14. backend srv02 {
  15. .host = "y.y.y.y";
  16. .port = "80";
  17. }
  18.  
  19. director lb random {
  20. .retries = 5;
  21. { .backend = srv01; .weight = 7; }
  22. { .backend = srv02; .weight = 7; }
  23. }
  24.  
  25. sub vcl_recv {
  26. set req.backend = lb;
  27. }
  28.  
  29.  
  30. Le firewall contient les règles suivantes :
  31. $IPTABLES -A INPUT -i $EXTIF1 -m state --state NEW,ESTABLISHED,RELATED -p tcp -s $UNIVERSE -d $EXTIP1 --dport 21 -j ACCEPT
  32. $IPTABLES -A INPUT -i $EXTIF1 -m state --state NEW,ESTABLISHED,RELATED -p tcp -s $UNIVERSE -d $EXTIP1 --dport 80 -j ACCEPT
  33. $IPTABLES -A INPUT -i $EXTIF1 -m state --state NEW,ESTABLISHED,RELATED -p tcp -s $UNIVERSE -d $EXTIP1 --dport 443 -j ACCEPT
  34. $IPTABLES -A INPUT -p tcp --dport 6081 -j ACCEPT
  35. $IPTABLES -A INPUT -s $UNIVERSE -d $UNIVERSE -j reject-and-log-it
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement