OverviewLet's assume that a firewall is connected via two separate
- Ethernet interfaces to two different ISPs as in the following
- diagram.
+ Ethernet interfaces to two different ISPs.
+ While we describe a setup using different ISPs in this
+ article, the facility also works with two uplinks from the same
+ ISP.
+ as in the following diagram.
@@ -1180,7 +1183,10 @@ shorewall 2 2 - eth0 192.168.1.254 track,balance=2,optional<
Gateway Monitoring and FailoverThere are a couple of options available for monitoring the status
- of provider links and taking action when a failure occurs.
+ of provider links and taking action when a failure occurs. Both of these
+ options assume that each provider has a unique nexthop gateway; if two
+ or more providers use the same gateway router then neither option is
+ suitable.
You specify the option in
/etc/shorewall/interfaces: