Forum Discussion

Joe_Volesky_969's avatar
Joe_Volesky_969
Icon for Nimbostratus rankNimbostratus
Nov 08, 2013

Passive LTM ARPs non-masqueraded MAC for new virtual server IP upon config sync

This is more of an annoyance than anything, but I'm curious if I have something set up incorrectly that's causing this behavior.

 

Scenario:

 

Active/Passive LTM pair, running 11.4.1

 

Single floating traffic group, specifying a MAC masquerade

 

Add a new HTTP virtual server with a new IP address (i.e., devices haven't seen this IP address yet)

 

Ping new virtual server IP - ping is good.

 

Ensure that in Local Traffic-Virtual Servers-Virtual Address List that this new IP is set on the floating traffic group

 

Sync the config from Active to Passive.

 

Ping new virtual server IP - ping is lost.

 

Prior to the configuration sync, router ARP table shows the MAC Masquerade address associated with the new virtual server IP. After the configuration sync, router ARP table shows one of the passive LTM's interfaces' MAC address.

 

I can clear that passive LTM interface's MAC on the router, then ping the virtual server again, and get the MAC Masquerade address back into the router ARP table.

 

Although I don't want to test this right now, I'm pretty sure that a failover event from active-to-passive would also fix the issue (gratuitous ARP and all), and failover back to the former-active would continue to utilize the MAC Masquerade.

 

It's just on that initial configuration sync after adding the new virtual server IP where I have that issue. Is this a bug?

 

Thanks in advance for any pointers.

 

  • Joe

1 Reply

  • Interesting and quite likely not something most would test for. You might be doing us all a favour if you report this to F5 support.