Forum Discussion

Jovoris_186939's avatar
Jovoris_186939
Icon for Nimbostratus rankNimbostratus
Jul 14, 2015

Connection mirroring not working with SSH on VE edition

hello,

 

I built a lab using VE edition. A SSH VIP(10.10.1.100) is created and connection mirror is enabled, the configuration is consistent between both of active and standby unit. However, while i'm forcing active unit to standby, SSH session is killed Platform: VMware workstation + VEv10.2.4 Topology: PC--LTM HA Pair--Server Farm

 

After doing further troubleshooting, i discovered connection mirroring table is not populated at all on both of active & standby unit!!!

 

[admin@LTM-VE-01:Active] ~ b conn show 10.10.1.30:65051 <-> 10.10.1.100:ssh <-> 172.16.20.2:ssh tcp 1/0

 

-------------------->SSH session is established successfully, i can ssh and do "ipconfig" on the SSH server C:\Documents and Settings\Administrator\W++f>ipconfig Connection-specific DNS Suffix . : IP Address. . . . . . . . . . . . : 172.16.20.2 Subnet Mask . . . . . . . . . . . : 255.255.255.0 Default Gateway . . . . . . . . . : 172.16.20.33

 

[admin@LTM-VE-01:Active] ~ b conn mirror show all No Conns were found. ------------------->connection mirror table is empty

 

[admin@LTM-VE-02:Standby] ~ b conn mirror show No Conns were found. ------------------->connection mirror table is empty

 

Appreciate if anyone could share lights

 

2 Replies

  • hi all,

     

    Issue resolved

     

    We need to specify mirroring address on both systems, it's under System>High availability>Network mirroring. F5 best practice says we should dedicate a VLAN for connection mirroring purpose, but it's not possible to follow this practice in VE lab environment, so i leverage Internal VLAN facing back-end servers to accomplish the same result

     

    • Ronald_van_der3's avatar
      Ronald_van_der3
      Icon for Nimbostratus rankNimbostratus
      That is correct, you need to enable network mirroring for the actual synchronization. Then you have to set the 'checkbox' in the virtual server configuration to actually mirror for that VS