mirror of
https://github.com/vyos/vyos-documentation.git
synced 2025-10-26 08:41:46 +01:00
New conntrack syntax for Sagitta requires explicit enabling
This commit is contained in:
parent
fcdb0ddd19
commit
e8d4457826
@ -306,21 +306,17 @@ public interface.
|
|||||||
set nat source rule 10 translation address '203.0.113.1'
|
set nat source rule 10 translation address '203.0.113.1'
|
||||||
|
|
||||||
|
|
||||||
Configure conntrack-sync and disable helpers
|
Configure conntrack-sync and enable helpers
|
||||||
--------------------------------------------
|
--------------------------------------------
|
||||||
|
|
||||||
Most conntrack modules cause more problems than they're worth, especially in a
|
Conntrack modules are disabled by default because they cause more problems
|
||||||
complex network. Turn them off by default, and if you need to turn them on
|
than they're worth, especially in a complex network. You can enable them
|
||||||
later, you can do so.
|
manually if you wish.
|
||||||
|
|
||||||
.. code-block:: none
|
.. code-block:: none
|
||||||
|
|
||||||
set system conntrack modules ftp disable
|
set system conntrack modules ftp enable
|
||||||
set system conntrack modules gre disable
|
set system conntrack modules gre enable
|
||||||
set system conntrack modules nfs disable
|
|
||||||
set system conntrack modules pptp disable
|
|
||||||
set system conntrack modules sip disable
|
|
||||||
set system conntrack modules tftp disable
|
|
||||||
|
|
||||||
Now enable replication between nodes. Replace eth0.201 with bond0.201 on the
|
Now enable replication between nodes. Replace eth0.201 with bond0.201 on the
|
||||||
hardware router.
|
hardware router.
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user