Forum Discussion
steelplate_8766
Nimbostratus
May 25, 2010sNAT to Windows server and port collision
Hi,
I have an F5 doing sNAT, and the problem I face is that the windows server keeps the port in time_wait (currently default 240 seconds windows 2003 server). The F5 will attempt to reuse the client...
Jerome_42901
Nimbostratus
Jun 10, 2010I've had this port collision issue as well on a application we load balance that involves very short lived connections.
To address the issue, I've created a custom FastL4 profile with custom tcp close timeout that matches the TcpTimedWaitDelay we set on the windows servers (which we lowered from 240s to 30s iirc), and added more IP's to the SNAT pool. We have not faced another port collision issue since this "fix" went live.
I hope it helps. edit: I'm not sure toying with sysctl on the F5 itself will help in any way, as I think it would only impact TCP connections to the F5 services (ssh, https, whatever) but not to the VIP.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
