summaryrefslogtreecommitdiff
path: root/docs/configexamples/ha.rst
diff options
context:
space:
mode:
authorerkin <e.altunbas@vyos.io>2021-09-10 21:27:14 +0300
committererkin <e.altunbas@vyos.io>2021-09-10 21:27:14 +0300
commita362d1b248d7cbfd820055eff7e0cc5c616aed6f (patch)
tree3a4f49c4393cac3afabe6a6f4db3b9fb421ca799 /docs/configexamples/ha.rst
parent03a46f6024501a224f047a74a704010897d4de7b (diff)
downloadvyos-documentation-a362d1b248d7cbfd820055eff7e0cc5c616aed6f.tar.gz
vyos-documentation-a362d1b248d7cbfd820055eff7e0cc5c616aed6f.zip
Update conntrack modules syntax
Diffstat (limited to 'docs/configexamples/ha.rst')
-rw-r--r--docs/configexamples/ha.rst16
1 files changed, 6 insertions, 10 deletions
diff --git a/docs/configexamples/ha.rst b/docs/configexamples/ha.rst
index 25d066b0..90f52108 100644
--- a/docs/configexamples/ha.rst
+++ b/docs/configexamples/ha.rst
@@ -306,21 +306,17 @@ public interface.
set nat source rule 10 translation address '203.0.113.1'
-Configure conntrack-sync and disable helpers
+Configure conntrack-sync and enable helpers
--------------------------------------------
-Most conntrack modules cause more problems than they're worth, especially in a
-complex network. Turn them off by default, and if you need to turn them on
-later, you can do so.
+Conntrack modules are disabled by default because they cause more problems
+than they're worth, especially in a complex network. You can enable them
+manually if you wish.
.. code-block:: none
- set system conntrack modules ftp disable
- set system conntrack modules gre disable
- set system conntrack modules nfs disable
- set system conntrack modules pptp disable
- set system conntrack modules sip disable
- set system conntrack modules tftp disable
+ set system conntrack modules ftp
+ set system conntrack modules gre
Now enable replication between nodes. Replace eth0.201 with bond0.201 on the
hardware router.