Do you use IPIP tunnel on the real servers ? _______________________________________________ Please read the documentation before posting - it's available at: http://www.linuxvirtualserver.org/ Linux
Well now for the facepalm moment. I updated our kernel for Scientific Linux for a security update and it seems to have solved this problem. I will endeavor to find what bug was fixed now. failing ker
Hello, What is the model/revision of the incoming network device? Do you have IPVS debugging enabled to check if IPVS works with these dropped packets? Or they are lost before reaching IPVS at LOCAL_
Thank you for the suggestion. We didn't have the netfilter module loaded at all so I don't think it would have having any impact. However I loaded it and set this setting and it didn't change the beh
Hello, I'm the network guy working through this issue with Phillip. I'm going to have to clutter up the email to annotate the packet captures, so please bear with me... I want to echo Phillip that we
Hello, Can you test with enabled nf_conntrack_tcp_be_liberal or ip_conntrack_tcp_be_liberal sysctl value in director? May be packets are dropped by conntrack because packets from reply direction are
I do not understand why on line 15 of the tcpdump you can see a 326 byte packet is received from the client, but isn't forwarded to the real server. There wouldn't be any fragmentation issues with th
I have IPVS setup with 2 VIPs talking to the same real server configured for direct server return (ie TUN type). One vip is port 80 http and one vip is 443 for https/SSL. The SSL vip doesn't work pro