Forum Discussion
Adrian_Turcu_10
May 13, 2013Nimbostratus
I guess in the initial post was supposed to mention the listening VIP config for the inbound connections. This VIP shares the same IP as the selective SNAT from above and it experience the "lag".
4.
virtual external-VIP {
snat automap
pool server-farm-pool
destination 192.168.1.2:http
ip protocol tcp
profiles { http tcp }
vlans external-VLAN enable
}
The external VIP is available only on the external-VLAN , while the forwarding VIP is on the internal-pool-VLAN only.
The external VIP listens on a port < 1024 for client connections
The SNAT will generate traffic from the same IP address as the external VIP, but on ports always > 1024
So, how would the connection tracking get confused especially the 2 types of traffic originate on different interfaces (internal-VLAN vs external-VLAN) ?
Thanks,
Adrian
P.S. Myself and OttimoMassimo work in the same place, tracking on the same issue...