
=== Muhammad is now known as OERIAS
mappshi all05:18
OERIAShey mapps07:42
OERIASAnyone here has tried PA roms?07:42
j0sh^Ey guys, any iptables gurus here? Trying to migrate a web server hosting and do redirects from old -> new using IPtables, while DNS propogates08:27
MartijnVdSj0sh^: you want DNAT08:31
j0sh^MartijnVdS: currently am using:08:32
j0sh^iptables -t nat -A PREROUTING -p tcp --dport 443 -j DNAT --to-destination NEWSERVERIP08:32
j0sh^iptables -t nat -A POSTROUTING -p tcp -d NEWSERVERIP --dport 443 -j MASQUERADE08:33
j0sh^but on the new web server, it's logging the IP address of the OLD server for incoming requests08:33
MartijnVdSmasquerade? I don't think that's necessary08:33
j0sh^which is the http_x_forwarded_for address08:33
MartijnVdSyeah.. that's because you're doing this on the IP level08:34
MartijnVdSif you want a proper X-Forwarded-For, you'll have to set up your web server to do the reverse proxying work08:34
j0sh^MartijnVdS: I thought thats what MASQUERADE was for. So it sends to new server as if from original client, not itself...08:34
MartijnVdSno, it can't08:35
MartijnVdSRouting and ARP don't work that way08:35
MartijnVdS(if it did, you could spoof being any IP as a client, by setting up a masquerade rule)08:35
j0sh^Am following this btw: http://serverfault.com/questions/371833/changing-servers-redirect-to-new-ip-no-downtime08:36
j0sh^rather blindly may I add08:36
MartijnVdSthat might work if they're both on the same network.. or it might not08:36
j0sh^So there is no way to redirect all traffic from old web server to new web server ( while DNS propogates ) and keep the client IP?08:37
=== zmoylan-1i is now known as zmoylan-pi
brobostigonmorning boys and girls.09:07
MartijnVdShi brobostigon09:07
brobostigonmorning MartijnVdS09:07
popeywant ☻09:09
=== Seeker`_ is now known as Seeker`
=== Seeker` is now known as Guest97941
=== Guest97941 is now known as Seeker
=== Lcawte|Away is now known as Lcawte
mappshi all12:26
zmoylan-1igreetings carbon based lifeforms :-)12:26
=== zmoylan-1i is now known as zmoylan-pi
=== dutchie_ is now known as dutchie
=== Lcawte is now known as Lcawte|Away
=== Lcawte|Away is now known as Lcawte

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!