Forum Discussion
Ben_Newport_102
Nimbostratus
Mar 10, 2015F5 APM Frequent Reconnects
We have about 2000 users on our VPN during normal work hours and a subset of those users encounter frequent reconnects to the network access portion of our APM solution. The webtop never logs off an...
Ben_Newport_102
Nimbostratus
May 12, 2016There have been several issues found and several engineering fixes as well. The most significant one for us was that we couldn't use split tunneling and discovered users connected couldn't reach their local DHCP server once connected to the VPN. Some of the ISPs had the lease time so low (10 mins) that it was causing frequent disconnects. Once the user was disconnected they could renew their lease and the edge client could re-establish the connection. The Hotfix for us allows this traffic now. Another issue we had is with DTLS tunnels that we preferred as users do lync voice and video meetings over VPN. We are experiencing an issue where we are getting fragmentation on the UDP packets and the tunnel becomes unstable (things like outlook won't connect, lync drops, uploads fail to sharepoint) or the tunnel collapses. It never fails back to TLS as DTLS 4433 is reachable. We believe it to be an issue on that particular VPN in that we don't allow ping to the VIP. Without that PMTUD can't be don't to dynamically size the MTU settings to keep fragmentation from happening. Still waiting on this confirmation.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects