Issues with F5 appliance black holeing traffic
Hi
wondering if anyone can help or has seen an issue similar to this?
2 tenants on 1 Host
One tenant has the issue, the other doesn't.
All upstream networks and devices assurance checked and logs analysed.
Issue only present on Hostname: dcnn-lb01-int.circlehealthgroup.co.uk
Key Info:
CPU in the control plane consistently spikes at 100% (5-10 times per min)
Outbound traffic is blackholed if session starts during CPU spikes.
All outbound traffic types all affected - ICMP from tmos, Node polling, F5 sync messaging, snmp messages....etc
If session starts outside of CPU spikes then issue isn't present - ICMP started will run continuously without drops
Symptoms last < 2secs per "CPU event".
Symptoms present as if the default route drops/changes, gateway is unreachable or traffic is blackholed.
Repeating here but essential to note that this is only for newly established sessions during that window.
Established sessions (e.g. continuous ICMP from tmos) are not affected during the same blackholing event window where new sessions are.
Thanks in advance
Dave