{"id":81593,"date":"2020-05-15T01:42:36","date_gmt":"2020-05-14T23:42:36","guid":{"rendered":"https:\/\/prohoster.info\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2"},"modified":"2020-05-15T01:42:36","modified_gmt":"2020-05-14T23:42:36","slug":"tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2","title":{"rendered":"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/d03a56702a85f4c8c80a6cac3e489980.jpg\" style=\"display:block;margin: 0 auto;\" \/><br \/>\nKoha e fundit p\u00ebrballa me nj\u00eb detyr\u00eb t\u00eb pazakonshme p\u00ebr konfigurimin e rutimit p\u00ebr MetalLB. Nuk do t\u00eb ishte ndonj\u00eb problem, pasi zakonisht p\u00ebr MetalLB nuk k\u00ebrkohen veprime shtes\u00eb, por n\u00eb rastin ton\u00eb ka nj\u00eb klaster t\u00eb madh me nj\u00eb konfigurim t\u00eb thjesht\u00eb rrjeti.<\/p>\n<p><\/p>\n<p>N\u00eb k\u00ebt\u00eb artikull do t\u00eb tregoj se si t\u00eb konfiguroni rutimin e bazuar n\u00eb burim dhe rutimin e bazuar n\u00eb politika p\u00ebr rrjetin tuaj t\u00eb jasht\u00ebm.<\/p>\n<p><\/p>\n<p>Nuk do t\u00eb ndalem n\u00eb instalimin dhe konfigurimin e MetalLB, pasi supozoj se keni ndonj\u00eb p\u00ebrvoj\u00eb. Propozoj t\u00eb kalojm\u00eb drejtp\u00ebrs\u00ebdrejti n\u00eb pun\u00eb, dometh\u00ebn\u00eb n\u00eb konfigurimin e rutimit. K\u00ebshtu kemi kat\u00ebr raste:<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><\/p>\n<h1 id=\"sluchay-1-kogda-nastroyka-ne-trebuetsya\">Rasti 1: Kur rregullimi nuk k\u00ebrkohet<\/h1>\n<p><\/p>\n<p>T\u00eb shqyrtojm\u00eb nj\u00eb rast t\u00eb thjesht\u00eb.<\/p>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/f79cc1169741b899c95e76d5d4cf60fc.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>Rregullimi shtes\u00eb i rutimit nuk k\u00ebrkohet kur adresat e dh\u00ebna nga MetalLB jan\u00eb n\u00eb t\u00eb nj\u00ebjt\u00ebn n\u00ebnrrjet\u00eb me adresat e nodave tuaj.<\/p>\n<p><\/p>\n<p>P\u00ebr shembull, keni nj\u00eb n\u00ebnrrjet\u00eb <code>192.168.1.0\/24<\/code>, aty ka nj\u00eb rutues <code>192.168.1.1<\/code>, dhe nodet tuaja marrin adresat: <code>192.168.1.10-30<\/code>, at\u00ebher\u00eb p\u00ebr MetalLB mund t\u00eb konfiguroni nj\u00eb rang <code>192.168.1.100-120<\/code> dhe t\u00eb jeni t\u00eb sigurt se ato do t\u00eb funksionojn\u00eb pa ndonj\u00eb konfigurim shtes\u00eb.<\/p>\n<p><\/p>\n<p>Pse k\u00ebshtu? Sepse nodet tuaja tashm\u00eb kan\u00eb t\u00eb konfigurura rrug\u00eb:<\/p>\n<p><\/p>\n<pre><code class=\"bash\"># ip route\ndefault via 192.168.1.1 dev eth0 onlink \n192.168.1.0\/24 dev eth0 proto kernel scope link src 192.168.1.10<\/code><\/pre>\n<p><\/p>\n<p>Dhe adresat nga i nj\u00ebjti rang do t\u00eb rip\u00ebrdorin ato pa ndonj\u00eb p\u00ebrpjekje shtes\u00eb.<\/p>\n<p><\/p>\n<h1 id=\"sluchay-2-kogda-trebuetsya-dopolnitelnaya-nastroyka\">Rasti 2: Kur k\u00ebrkohet rregullim shtes\u00eb<\/h1>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/02392fbc3c16bdf52f0c5ddaf5688e7d.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>Ju duhet t\u00eb konfiguroni rrug\u00eb shtes\u00eb \u00e7do her\u00eb kur nodet tuaja nuk kan\u00eb t\u00eb konfiguruar <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/sq\/lir\/ipv4\/\"   title=\"IP-\u0430\u0434\u0440\u0435\u0441\u0430\" data-wpil-keyword-link=\"linked\"  data-wpil-monitor-id=\"666\">IP-\u0430\u0434\u0440\u0435\u0441\u0430<\/a> apo nj\u00eb rrug\u00eb n\u00eb n\u00ebnrrjeten p\u00ebr t\u00eb cil\u00ebn MetalLB ka dh\u00ebn\u00eb adresat.<\/p>\n<p><\/p>\n<p>T\u00eb shpjegoj pak m\u00eb n\u00eb detaje. \u00c7do her\u00eb q\u00eb MetalLB jep nj\u00eb adres\u00eb, kjo mund t\u00eb krahasohet me nj\u00eb em\u00ebrim t\u00eb thjesht\u00eb t\u00eb k\u00ebtij lloji:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">ip addr add 10.9.8.7\/32 dev lo<\/code><\/pre>\n<p><\/p>\n<p>Vini re, se:<\/p>\n<p><\/p>\n<ul>\n<li><strong>a)<\/strong> Adresa jepet me prefiks <code>\/32<\/code> pra rruga n\u00eb n\u00ebnrrjet\u00eb p\u00ebr t\u00eb nuk do t\u00eb shtohet automatikisht (\u00ebsht\u00eb thjesht nj\u00eb adres\u00eb)<\/li>\n<li><strong>b)<\/strong> Adresa lidhet me \u00e7do nd\u00ebrfaqe t\u00eb nod\u00ebs (p.sh. loopback). K\u00ebtu \u00ebsht\u00eb e r\u00ebnd\u00ebsishme t\u00eb p\u00ebrmendet ve\u00e7oria e shtres\u00ebs rrjetore t\u00eb Linux. Nuk ka r\u00ebnd\u00ebsi n\u00eb cil\u00ebn nd\u00ebrfaqe e shtoni adres\u00ebn, b\u00ebrthama gjithmon\u00eb do t\u00eb trajtoj\u00eb k\u00ebrkesat arp dhe do t\u00eb d\u00ebrgoj\u00eb p\u00ebrgjigjet arp n\u00eb cil\u00ebndo prej tyre; ky q\u00ebndrim konsiderohet i sakt\u00eb dhe, p\u00ebr m\u00eb tep\u00ebr, p\u00ebrdoret gjer\u00ebsisht n\u00eb nj\u00eb mjedis dinamik si Kubernetes.<\/li>\n<\/ul>\n<p><\/p>\n<p>Ky q\u00ebndrim mund t\u00eb konfigurohet, p\u00ebr shembull duke aktivizuar arp strikt:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">echo 1 &gt; \/proc\/sys\/net\/ipv4\/conf\/all\/arp_ignore\necho 2 &gt; \/proc\/sys\/net\/ipv4\/conf\/all\/arp_announce<\/code><\/pre>\n<p><\/p>\n<p>N\u00eb k\u00ebt\u00eb rast, p\u00ebrgjigjet ARP do t\u00eb d\u00ebrgohen vet\u00ebm n\u00ebse interfaci p\u00ebrmban nj\u00eb adres\u00eb IP specifike. Ky cil\u00ebsim \u00ebsht\u00eb i detyruesh\u00ebm n\u00eb rast se planifikoni t\u00eb p\u00ebrdorni MetalLB dhe kube-proxy juaj punon n\u00eb modalitetin IPVS.<\/p>\n<p><\/p>\n<p>Megjithat\u00eb, MetalLB nuk p\u00ebrdor b\u00ebrtham\u00ebn p\u00ebr t\u00eb p\u00ebrpunuar k\u00ebrkesat ARP, por e b\u00ebn k\u00ebt\u00eb vet\u00eb n\u00eb hap\u00ebsir\u00ebn e p\u00ebrdoruesit, k\u00ebshtu q\u00eb kjo mund\u00ebsi nuk do t\u00eb ndikoj\u00eb n\u00eb funksionimin e MetalLB.<\/p>\n<p><\/p>\n<p>Le t\u00eb kthehemi n\u00eb detyr\u00ebn ton\u00eb. N\u00ebse nuk ekziston nj\u00eb rrug\u00eb p\u00ebr adresat e shp\u00ebrndara n\u00eb nodet tuaja, shtoni at\u00eb paraprakisht n\u00eb t\u00eb gjitha nodet:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">ip route add 10.9.8.0\/24 dev eth1<\/code><\/pre>\n<p><\/p>\n<h1 id=\"sluchay-3-kogda-ponadobitsya-source-based-routing\">Rasti 3: Kur do t\u00eb jet\u00eb e nevojshme routing bazuar n\u00eb burim<\/h1>\n<p><\/p>\n<p>Ju nevojitet t\u00eb konfiguroni routing bazuar n\u00eb burim kur merrni paketa p\u00ebrmes nj\u00eb gateway t\u00eb ve\u00e7ant\u00eb, ndryshe nga ai q\u00eb keni konfiguruar si t\u00eb parazgjedhur, prandaj, paketat e p\u00ebrgjigjes gjithashtu duhet t\u00eb shkojn\u00eb p\u00ebrmes k\u00ebtij gateway.<\/p>\n<p><\/p>\n<p>P\u00ebr shembull, ju keni t\u00eb nj\u00ebjtin subnet <code>192.168.1.0\/24<\/code> t\u00eb dedikuar p\u00ebr nodet tuaja, por d\u00ebshironi t\u00eb jepni adresat e jashtme me MetalLB. Supozoni se keni disa adresa nga subneti <code>1.2.3.0\/24<\/code> n\u00eb VLAN 100, dhe d\u00ebshironi t'i p\u00ebrdorni ato p\u00ebr t\u00eb aksesuar sh\u00ebrbimet e Kubernetes nga jasht\u00eb.<\/p>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/9360f35c4bfae25b12fc5aab2644b775.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>Kur t\u00eb drejtoheni n\u00eb <code>1.2.3.4<\/code> do t\u00eb b\u00ebni k\u00ebrkesa nga nj\u00eb subnet tjet\u00ebr nga <code>1.2.3.0\/24<\/code> dhe do t\u00eb prisni nj\u00eb p\u00ebrgjigje. Noda, e cila p\u00ebr momentin \u00ebsht\u00eb masteri p\u00ebr adres\u00ebn e dh\u00ebn\u00eb nga MetalLB <code>1.2.3.4<\/code>, do t\u00eb marr\u00eb paket\u00ebn nga routeri <code>1.2.3.1<\/code>, por p\u00ebrgjigja p\u00ebr t\u00eb duhet patjet\u00ebr t\u00eb shkoj\u00eb n\u00eb t\u00eb nj\u00ebjtin rrug\u00eb, p\u00ebrmes <code>1.2.3.1<\/code>.<\/p>\n<p><\/p>\n<p>Duke qen\u00eb se noda jon\u00eb tashm\u00eb ka nj\u00eb gateway t\u00eb parazgjedhur <code>192.168.1.1<\/code>, p\u00ebrgjigja automatikisht do t\u00eb shkoj\u00eb aty, dhe jo p\u00ebr <code>1.2.3.1<\/code>, p\u00ebrmes t\u00eb cilit mor\u00ebm paket\u00ebn.<\/p>\n<p><\/p>\n<p>Si mund ta zgjidhim k\u00ebt\u00eb situat\u00eb?<\/p>\n<p><\/p>\n<p>N\u00eb k\u00ebt\u00eb rast, ju nevojitet t\u00eb p\u00ebrgatitni t\u00eb gjitha nodet tuaja n\u00eb m\u00ebnyr\u00eb q\u00eb ato t\u00eb jen\u00eb t\u00eb gatshme t\u00eb mund\u00ebsojn\u00eb adresat e jashtme pa konfigurime shtes\u00eb. K\u00ebshtu, p\u00ebr shembullin e lartp\u00ebrmendur, ju duhet t\u00eb krijoni paraprakisht nj\u00eb nd\u00ebrfaqe VLAN n\u00eb nod\u00eb:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">ip link add link eth0 name eth0.100 type vlan id 100\nip link set eth0.100 up<\/code><\/pre>\n<p><\/p>\n<p>Dhe pastaj t\u00eb shtoni rrug\u00ebt:<\/p>\n<p><\/p>\n<pre><code class=\"plaintext\">ip route add 1.2.3.0\/24 dev eth0.100 table 100\nip route add default via 1.2.3.1 table 100<\/code><\/pre>\n<p><\/p>\n<p>Vini re se rrug\u00ebt i shtojm\u00eb n\u00eb nj\u00eb tabel\u00eb t\u00eb ve\u00e7ant\u00eb rrug\u00ebtimi <code>100<\/code> ajo do t\u00eb p\u00ebrmbaj\u00eb vet\u00ebm dy rrug\u00eb t\u00eb nevojshme p\u00ebr d\u00ebrgimin e paket\u00ebs p\u00ebrmes gateway <code>1.2.3.1<\/code>, q\u00eb ndodhet pas nd\u00ebrfaqes <code>eth0.100<\/code>.<\/p>\n<p><\/p>\n<p>Tani na nevojitet t\u00eb shtojm\u00eb nj\u00eb rregull t\u00eb thjesht\u00eb:<\/p>\n<p><\/p>\n<pre><code class=\"plaintext\">ip rule add from 1.2.3.0\/24 lookup 100<\/code><\/pre>\n<p><\/p>\n<p>e cila thot\u00eb qart\u00eb: n\u00ebse adresa burimore e paket\u00ebs ndodhet n\u00eb <code>1.2.3.0\/24<\/code>, at\u00ebher\u00eb duhet t\u00eb p\u00ebrdorni tabel\u00ebn e rrug\u00ebtimit <code>100<\/code>. N\u00eb t\u00eb kemi p\u00ebrshkruar tashm\u00eb itinerarin q\u00eb do ta d\u00ebrgoj\u00eb at\u00eb p\u00ebrmes <code>1.2.3.1<\/code><\/p>\n<p><\/p>\n<h1 id=\"sluchay-4-kogda-ponadobitsya-policy-based-routing\">Rasti 4: Kur do t\u00eb nevojitet routing i bazuar n\u00eb politika<\/h1>\n<p><\/p>\n<p>Topologjia e rrjetit \u00ebsht\u00eb si n\u00eb shembullin e m\u00ebparsh\u00ebm, por supozojm\u00eb se d\u00ebshironi gjithashtu t\u00eb keni mund\u00ebsin\u00eb q\u00eb t\u00eb aksesoni adresat e jashtme t\u00eb pool-it <code>1.2.3.0\/24<\/code> nga pods tuaj:<\/p>\n<p><\/p>\n<p><img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/46f1f7c2826d87ec1fe8499862ccdd1a.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>Ve\u00e7oria q\u00ebndron n\u00eb faktin se kur i drejtohen \u00e7do adrese n\u00eb <code>1.2.3.0\/24<\/code>, paketi p\u00ebrgjigj\u00ebs, duke arritur n\u00eb nod dhe duke pasur adres\u00ebn e burimit n\u00eb gam\u00ebn <code>1.2.3.0\/24<\/code> , do t\u00eb d\u00ebrgohet n\u00ebnshtruar n\u00eb <code>eth0.100<\/code>, por ne duam q\u00eb Kubernetes ta redirektoj\u00eb at\u00eb n\u00eb pod-in ton\u00eb t\u00eb par\u00eb, i cili e gjeneroi k\u00ebrkes\u00ebn origjinale.<\/p>\n<p><\/p>\n<p>Zgjidhja e k\u00ebtij problemi u tregua e v\u00ebshtir\u00eb, por kjo u mund\u00ebsua fal\u00eb routing-ut t\u00eb bazuar n\u00eb politika:<\/p>\n<p><\/p>\n<p>P\u00ebr nj\u00eb kuptim m\u00eb t\u00eb thell\u00eb t\u00eb procesit, do t\u00eb jap nj\u00eb diagram kuadrim netfilter:<br \/>\n<img decoding=\"async\" alt=\"Rregullimi i holl\u00ebsish\u00ebm i rutimit p\u00ebr MetalLB n\u00eb modalitetin L2\" src=\"\/wp-content\/uploads\/2020\/05\/6b2f117c2dcddad85190156d566231c8.jpg\" style=\"display:block;margin: 0 auto;\" \/><\/p>\n<p><\/p>\n<p>P\u00ebr fillim, si n\u00eb shembullin e m\u00ebparsh\u00ebm, do t\u00eb krijojm\u00eb nj\u00eb tabel\u00eb t\u00eb re rrug\u00ebzimi:<\/p>\n<p><\/p>\n<pre><code class=\"plaintext\">ip route add 1.2.3.0\/24 dev eth0.100 table 100\nip route add default via 1.2.3.1 table 100<\/code><\/pre>\n<p><\/p>\n<p>Tani do t\u00eb shtojm\u00eb disa rregulla n\u00eb iptables:<\/p>\n<p><\/p>\n<pre><code class=\"plaintext\">iptables -t mangle -A PREROUTING -i eth0.100 -j CONNMARK --set-mark 0x100\niptables -t mangle -A PREROUTING -j CONNMARK --restore-mark\niptables -t mangle -A PREROUTING -m mark ! --mark 0 -j RETURN\niptables -t mangle -A POSTROUTING -j CONNMARK --save-mark<\/code><\/pre>\n<p><\/p>\n<p>K\u00ebto rregulla do t\u00eb markojn\u00eb lidhjet hyr\u00ebse n\u00eb nd\u00ebrfaqen <code>eth0.100<\/code>, duke e markuar t\u00eb gjitha paketat me etiket\u00ebn <code>0x100<\/code>, kjo etiket\u00eb do t\u00eb p\u00ebrdoret gjithashtu p\u00ebr p\u00ebrgjigjet brenda t\u00eb nj\u00ebjt\u00ebs lidhje.<\/p>\n<p><\/p>\n<p>Tani mund t\u00eb shtojm\u00eb nj\u00eb rregull rrug\u00ebzimi:<\/p>\n<p><\/p>\n<pre><code class=\"plaintext\">ip rule add from 1.2.3.0\/24 fwmark 0x100<\/code><\/pre>\n<p><\/p>\n<p>Pra, t\u00eb gjitha paketat me adres\u00ebn e burimit <code>1.2.3.0\/24<\/code> dhe etiket\u00ebn <code>0x100<\/code> duhet t\u00eb rrug\u00ebzohen duke p\u00ebrdorur tabel\u00ebn <code>100<\/code>.<\/p>\n<p><\/p>\n<p>K\u00ebshtu, paketat e tjera q\u00eb priten n\u00eb nj\u00eb nd\u00ebrfaqe tjet\u00ebr, nuk bien n\u00ebn k\u00ebt\u00eb rregull, duke i lejuar ato t\u00eb rrug\u00ebzohen me mjetet standarde t\u00eb Kubernetes.<\/p>\n<p><\/p>\n<p>Ka nj\u00eb por, n\u00eb Linux ekziston nj\u00eb filtri i njohur si reverse path filter, i cili prishet situat\u00ebn duke kryer nj\u00eb kontroll t\u00eb thjesht\u00eb: p\u00ebr t\u00eb gjitha paketat hyr\u00ebse ai ndryshon adres\u00ebn e burimit t\u00eb paket\u00ebs me adres\u00ebn e d\u00ebrguesit dhe kontrollon n\u00ebse paketa mund t\u00eb dal\u00eb p\u00ebrmes t\u00eb nj\u00ebjt\u00ebs nd\u00ebrfaqe nga e cila \u00ebsht\u00eb marr\u00eb, n\u00ebse jo, at\u00ebher\u00eb e filtroi at\u00eb.<\/p>\n<p><\/p>\n<p>Problemi \u00ebsht\u00eb se n\u00eb rastin ton\u00eb do t\u00eb funksionoj\u00eb n\u00eb m\u00ebnyr\u00eb t\u00eb pap\u00ebrshtatshme, por ne mund ta \u00e7aktivizojm\u00eb at\u00eb:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">echo 0 &gt; \/proc\/sys\/net\/ipv4\/conf\/all\/rp_filter\necho 0 &gt; \/proc\/sys\/net\/ipv4\/conf\/eth0.100\/rp_filter<\/code><\/pre>\n<p><\/p>\n<p>Vini re, komanda e par\u00eb kontrollon sjelljen globale t\u00eb rp_filter, n\u00ebse nuk e \u00e7aktivizoni, at\u00ebher\u00eb komanda e dyt\u00eb nuk do t\u00eb ket\u00eb asnj\u00eb efekt. Megjithat\u00eb, gjith\u00eb nd\u00ebrfaqet e tjera do t\u00eb mbeten me rp_filter t\u00eb aktivizuar.<\/p>\n<p><\/p>\n<p>P\u00ebr t\u00eb mos e kufizuar plot\u00ebsisht funksionimin e filtrit, ne mund t\u00eb shfryt\u00ebzojm\u00eb implementimin e rp_filter p\u00ebr netfilter. Duke p\u00ebrdorur rpfilter si nj\u00eb modul iptables, mund t\u00eb configurem rregulla mjaft fleksib\u00ebl, p\u00ebr shembull:<\/p>\n<p><\/p>\n<pre><code class=\"bash\">iptables -t raw -A PREROUTING -i eth0.100 -d 1.2.3.0\/24 -j RETURN\niptables -t raw -A PREROUTING -i eth0.100 -m rpfilter --invert -j DROP<\/code><\/pre>\n<p><\/p>\n<p>aktivizoni rp_filter n\u00eb interface <code>eth0.100<\/code> p\u00ebr t\u00eb gjitha adresat p\u00ebrve\u00e7 <code>1.2.3.0\/24<\/code>.<\/p>\n<p>Burimi: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/post\/501842\/\">habr.com<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041d\u0435 \u0442\u0430\u043a \u0434\u0430\u0432\u043d\u043e \u044f \u0441\u0442\u043e\u043b\u043a\u043d\u0443\u043b\u0441\u044f \u0441 \u0432\u0435\u0441\u044c\u043c\u0430 \u043d\u0435\u0441\u0442\u0430\u043d\u0434\u0430\u0440\u0442\u043d\u043e\u0439 \u0437\u0430\u0434\u0430\u0447\u0435\u0439 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0438 \u043c\u0430\u0440\u0448\u0440\u0443\u0442\u0438\u0449\u0430\u0446\u0438\u0438 \u0434\u043b\u044f MetalLB. \u0412\u0441\u0451 \u0431\u044b \u043d\u0438\u0447\u0435\u0433\u043e, \u0442.\u043a. \u043e\u0431\u044b\u0447\u043d\u043e \u0434\u043b\u044f MetalLB \u043d\u0435 \u0442\u0440\u0435\u0431\u0443\u0435\u0442\u0441\u044f \u043d\u0438\u043a\u0430\u043a\u0438\u0445 \u0434\u043e\u043f\u043e\u043b\u043d\u0438\u0442\u0435\u043b\u044c\u043d\u044b\u0445 \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u0439, \u043d\u043e \u0432 \u043d\u0430\u0448\u0435\u043c \u0441\u043b\u0443\u0447\u0430\u0435 \u0438\u043c\u0435\u0435\u0442\u0441\u044f \u0434\u043e\u0441\u0442\u0430\u0442\u043e\u0447\u043d\u043e \u0431\u043e\u043b\u044c\u0448\u043e\u0439 \u043a\u043b\u0430\u0441\u0442\u0435\u0440 \u0441 \u0432\u0435\u0441\u044c\u043c\u0430 \u043d\u0435\u0445\u0438\u0442\u0440\u043e\u0439 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0435\u0439 \u0441\u0435\u0442\u0438. \u0412 \u0434\u0430\u043d\u043d\u043e\u0439 \u0441\u0442\u0430\u0442\u044c\u0435 \u044f \u0440\u0430\u0441\u0441\u043a\u0430\u0436\u0443 \u043a\u0430\u043a \u043d\u0430\u0441\u0442\u0440\u043e\u0438\u0442\u044c source-based \u0438 policy-based routing \u0434\u043b\u044f \u0432\u043d\u0435\u0448\u043d\u0435\u0439 \u0441\u0435\u0442\u0438 \u0432\u0430\u0448\u0435\u0433\u043e \u043a\u043b\u0430\u0441\u0442\u0435\u0440\u0430. \u042f [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":81594,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[688],"tags":[],"class_list":["post-81593","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-administrirovanie"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041d\u0435 \u0442\u0430\u043a \u0434\u0430\u0432\u043d\u043e \u044f \u0441\u0442\u043e\u043b\u043a\u043d\u0443\u043b\u0441\u044f \u0441 \u0432\u0435\u0441\u044c\u043c\u0430.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0422\u043e\u043d\u043a\u0430\u044f \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0430 \u043c\u0430\u0440\u0448\u0440\u0443\u0442\u0438\u0437\u0430\u0446\u0438\u0438 \u0434\u043b\u044f MetalLB \u0432 \u0440\u0435\u0436\u0438\u043c\u0435 L2 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041d\u0435 \u0442\u0430\u043a \u0434\u0430\u0432\u043d\u043e \u044f \u0441\u0442\u043e\u043b\u043a\u043d\u0443\u043b\u0441\u044f \u0441 \u0432\u0435\u0441\u044c\u043c\u0430.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-05-14T23:42:36+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-05-14T23:42:36+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Rregullimi i detajuar i ruterimit p\u00ebr MetalLB n\u00eb modin L2 | ProHoster","description":"Koh\u00ebt e fundit u p\u00ebrballa me nj\u00eb situat\u00eb mjaft interesante.","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0422\u043e\u043d\u043a\u0430\u044f \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0430 \u043c\u0430\u0440\u0448\u0440\u0443\u0442\u0438\u0437\u0430\u0446\u0438\u0438 \u0434\u043b\u044f MetalLB \u0432 \u0440\u0435\u0436\u0438\u043c\u0435 L2 | ProHoster","og:description":"\u041d\u0435 \u0442\u0430\u043a \u0434\u0430\u0432\u043d\u043e \u044f \u0441\u0442\u043e\u043b\u043a\u043d\u0443\u043b\u0441\u044f \u0441 \u0432\u0435\u0441\u044c\u043c\u0430.","og:url":"https:\/\/prohoster.info\/sq\/blog\/administrirovanie\/tonkaya-nastrojka-marshrutizaczii-dlya-metallb-v-rezhime-l2","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-05-14T23:42:36+00:00","article:modified_time":"2020-05-14T23:42:36+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"81593","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 15:55:42","updated":"2026-02-08 20:23:59","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/81593","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=81593"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/81593\/revisions"}],"predecessor-version":[{"id":157857,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/81593\/revisions\/157857"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media\/81594"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=81593"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=81593"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=81593"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}