LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: [lvs-users] Page load lockups..

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: [lvs-users] Page load lockups..
From: Graeme Fowler <graeme@xxxxxxxxxxx>
Date: Wed, 17 Oct 2007 09:35:20 +0100
On Wed, 2007-10-17 at 11:10 +0300, Janar Kartau wrote:
> Kernel is 2.6.18-8.1.10.el5. ip_nat_ftp.ko module exists but is not loaded
> (only ip_nat.ko is loaded).

Hrm... ip_nat is part of the netfilter system (iptables). 

> As for iptables conntrack.. yes, it's loaded and used.

If you can possibly strip back to a no firewall system, please do. I
expect you'll find your lockups disappear when you do - using conntrack
and ip_vs together can be unpredictable, as they're both trying to snag
packets as they traverse the system and it only takes on rule out of
place for everything to come crunching to a halt.

Graeme



<Prev in Thread] Current Thread [Next in Thread>