On Mon, 2002-08-05 at 09:18, Greg Woods wrote:
> On Mon, 2002-08-05 at 02:16, Martijn Klingens wrote:
>
> >
> > I don't think a reply packet from a real server's VIP will generate ARP
> > traffic. The original ARP request is answered by the directord and the
> > realserver is not supposed to answer to any ARP request.
>
> It doesn't, that's not the potential problem. The problem is *dynamic*
> ARP caching on the part of the router, where it puts IP/MAC pairs it
> sees into its ARP cache, WITHOUT ever receiving an explicit ARP for it.
>
> However, from what I have seen, it would appear that the person who told
> me this is misinformed. I set up an LVS with DR, and it seems to be
> working fine. I have not seen the real server's MAC address appear in
> the router's ARP cache for the VIP yet. On the other hand, there have
> been only a few test connections so far, I have not gone production. So
> I will have to keep an eye on this.
I have been running an LVS-DR setup with 2 LVS boxes, 4 Real Servers on
a Cisco 3548 switch and a Cisco 7513 router for over a year. We handle
>1M connections/day and everything is working perfectly. I haven't seen
any dynamic ARP issues at all.
-Matt
|