=== Muhammad is now known as OERIAS [05:18] hi all [07:42] hey mapps [07:42] Anyone here has tried PA roms? [08:27] Ey guys, any iptables gurus here? Trying to migrate a web server hosting and do redirects from old -> new using IPtables, while DNS propogates [08:31] j0sh^: you want DNAT [08:32] probably [08:32] MartijnVdS: currently am using: [08:32] iptables -t nat -A PREROUTING -p tcp --dport 443 -j DNAT --to-destination NEWSERVERIP [08:33] iptables -t nat -A POSTROUTING -p tcp -d NEWSERVERIP --dport 443 -j MASQUERADE [08:33] but on the new web server, it's logging the IP address of the OLD server for incoming requests [08:33] masquerade? I don't think that's necessary [08:33] which is the http_x_forwarded_for address [08:34] yeah.. that's because you're doing this on the IP level [08:34] if you want a proper X-Forwarded-For, you'll have to set up your web server to do the reverse proxying work [08:34] MartijnVdS: I thought thats what MASQUERADE was for. So it sends to new server as if from original client, not itself... [08:35] no, it can't [08:35] Routing and ARP don't work that way [08:35] (if it did, you could spoof being any IP as a client, by setting up a masquerade rule) [08:36] Am following this btw: http://serverfault.com/questions/371833/changing-servers-redirect-to-new-ip-no-downtime [08:36] :/ [08:36] rather blindly may I add [08:36] that might work if they're both on the same network.. or it might not [08:37] So there is no way to redirect all traffic from old web server to new web server ( while DNS propogates ) and keep the client IP? === zmoylan-1i is now known as zmoylan-pi [09:07] morning boys and girls. [09:07] hi brobostigon [09:07] morning MartijnVdS [09:09] http://www.3ders.org/articles/20140826-minnesotan-world-first-3d-printed-concrete-castle-in-his-own-backyard.html [09:09] want ☻ === Seeker`_ is now known as Seeker` === Seeker` is now known as Guest97941 === Guest97941 is now known as Seeker === Lcawte|Away is now known as Lcawte [12:26] hi all [12:26] greetings carbon based lifeforms :-) [12:33] :D === zmoylan-1i is now known as zmoylan-pi === dutchie_ is now known as dutchie === Lcawte is now known as Lcawte|Away === Lcawte|Away is now known as Lcawte