All, Figured I'd update all with the discovered problem in case it happens to you. My bare-metal vendor enabled uRFP on a some routers in their environment which causes the outgoing SYN-ACKs from the
One more follow up to see if there are any other suggestions. Yesterday I added a sixth real server to the cluster. All of these servers are of the exact same type (bare metal machines). I installed
On the failing real servers the response is sent but is never received by the client (e4:11:5b:ae:f9:e5). On the working server the response is sent and the client gets it and sends an ACK and the co
Hello, Response is going to e4:11:5b:ae:f9:e5 ? Do you see it reaching there? Also, simple test with client on LAN can reveal the problem, just check with tcpdump on client box. It can show if proble
Julian, Thanks for the suggestions. The following shows the results with the failing servers: tcpdump: listening on any, link-type LINUX_SLL (Linux cooked), capture size 65535 bytes 18:21:12.346348 I
Hello, If there is reponse, check on real server that it is correct: 1. It should contain VIP in saddr in IP header. This is expected because director should send the request to real server with VIP
My current findings. The overall LVS cluster is working at a degraded performance because four of the five real servers are failing. The failure is strange. When a client sends a request to the VIP (
Malcolm, If there is a conflict with performing both steps (iptables redirect and binding the VIP to lo:0) then I would think this should have failed when I first set it up. And now one real server i
Bruce, You definitely only need one, and personally I find the iptables method easiest. NB. Your apache instance must be configured to respond to the VIP as well as the RIP (heath checks are on the R
I followed instructions from two sources 1) http://www.centos.org/docs/5/html/Virtual_Server_Administration/s2-lvs-direct-iptables-VSA.html I updated iptables using the commands on this page. 2) http
snip -- "I have setup LVS-DR using IPTables." Then why are you using a loopback adapter as well? You only need to use one method iptables REDIRECT .... or ... loopbackadapter + arptables settings SYN
I have an LVS-DR cluster which has been running for seven months without a hitch. Recently, the cluster started to timeout on the majority of connections. Some connections were passed through to a re