LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

sharing experience with lvs

To: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
Subject: sharing experience with lvs
From: octave klaba <oles@xxxxxxx>
Date: Tue, 02 Apr 2002 19:34:11 +0200
Hi,
I posted a message 1 week ago about the problem I had and then lot of
people ask me to share experience about configuration and problems.
I think it is better to do it on a mailing list :)

we have 2 lvs systems:
first is done with 2 servers running on 2.2.X with lvs. master is 
piii with 512ram (dns cache need it, not lvs). slave is a celeron.
it works fine too. we use only intel network cart because we had lot of 
problems with 3com. failover is done with heartbeat thought network.
it is not really good since there is lot of broadcast packets. the
configuration thought serial cable did not work. I believe the cable
wasn't good :) We use mon to remove/add the web servers. with 20
servers the load was about 0. now with 80-90 is about 0.5 (since
mon has lot of activity). we use the configuration with ipchains.
it is really nice because all trafic comes thought master/slace and
leaves thought anothers gateway servers. we can run 6x100Mbs (with
6 gateway) on out 1gbs connexion. all is done with a DMZ (eth0/eth1) 
on the privat ip. it is not really hard to setup. all to do is to take 
2-3 hours to read the docs :)

the only problems we have are:
- ftp connexion is not stable. the persistance is 1200 sec and
we have only 1 ftp server. the customers can not upload 100-150Mb
at once (ftp server drop the connexion. it seems to drop but 
we did not really find out the solution). (we have ip_masq_ftp)
- since persistance is 1200sec  (for the session reason) we have
lot of load problem with the high-trafic proxy like curie.noos.fr
all trafic from curie.noos.fr goes to 1 web server :/
- when a connexion is from inside to outside (thougth the gateway)
the ip of the connexion is gateway's ip (normal ipchains -j MASQ).
the only problem is with the spamcops which took the ip from
gateway and blocked all (we do not host the spammers but we have
12000 sites hosted. sometimes 1-2 spams are sent :/)

the second lvs is done with only 1 server (1 network cart) and 
without DMZ (all servers are on the same /24). it works fine 
too with FWM configuration. the only "bug" is that ipvsadm gives
a number of the connexion really high. I do not how the number is taken
but I think it is because a packet comes and leaves on the same
network interface (eth0).

the servers web boot on the network with diskless and work 
with 2 netapp filers (F740/F720). it is really nice and easy to
admin.

Hope it helps
Octave


<Prev in Thread] Current Thread [Next in Thread>
  • sharing experience with lvs, octave klaba <=