LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Director not sending icmp unreachable to expired clients

To: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
Subject: Director not sending icmp unreachable to expired clients
From: Janusz Krzysztofik <jkrzyszt@xxxxxxxxxxxx>
Date: Fri, 19 Jan 2007 23:31:59 +0100
Hi,

I am using LVS director with no VIP for load balancing ipsec servers accessed by NATed clients (udp 500/4500, fwmark method). When I remove a relaserver (ipvsadm -d ...), its clients are not notified after their connections expire. I suspect that icmp responses are simply not generated on the director as they sholud be - I can not see them with tcpdump nor trace them with iptables rules. I could not find any piece of code in the IPVS sources (linux 2.6.18) that would generate such error responses. Are these icmp messages supposed to be generated by other means? If so, could it be that a director with no VIP is not able to respond?

Cheers,
Janusz



<Prev in Thread] Current Thread [Next in Thread>