Hi,
We have a problem with 6 webservers behind an ipvs node using wlc & nat.
We're seeing SYN packets come in, beeing forwarded to the webserver,
seeing the webserver send a SYN/ACK back to the ipvs node, and than from
the lvs node back to the client WITHOUT the src address rewritten.
This happens only to 10 (guestimate) percent of all connections. Most of
the connections work perfectly. Why would ipvs 'forget' to rewrite the src
address? We see it happen to packets from all realservers...
Could this be a configuration issue? Of a bug in ipvs?
Anybody have any idea where to start looking? Kernel version is 2.6.10 &
ipvsadm v1.24. Any hints or tips welcome!
Rgds,
Mark.
--
I waited and waited, and when no message came,
I knew it must be from you. - Ashleigh Brilliant.
|