> Can you trace the traffic between the real server and the
> director to check whether these ICMPs are generated from the real
> server. It is possible your real server to generate ICMP errors instead
> of TCP RST replies when you deliver the traffic locally by using
> ipchains -j REDIRECT in the real servers (not common case with NAT
> setups).
16:01:57.282867 eth0 < 192.168.12.1 > 192.168.12.3: icmp: 154.15.36.144
tcp port 1064 unreachable [tos 0xc0]
16:01:57.526536 eth0 < 154.14.36.18 > 192.168.12.3: icmp: host
154.15.36.144 unreachable
It does in deed look to be coming from the real server.
Hayden Myers
Skyline Network Technologies
hayden@xxxxxxxxxxx
(888)917-1600x120
|