210K MAC : SSL connection between TOR Agent and QFX is flapping
Affects | Status | Importance | Assigned to | Milestone | ||
---|---|---|---|---|---|---|
Juniper Openstack | Status tracked in Trunk | |||||
R2.20 |
Fix Committed
|
High
|
Prabhjot Singh Sethi | |||
Trunk |
Fix Committed
|
High
|
Prabhjot Singh Sethi |
Bug Description
Added 210K mac in one QFX. All this MAC is spread across 8 Physical Interface and 4000 LIF.
In this scenario connection between QFX and tor agent is flapping.
root@bng-
VTEP controller information:
Controller IP address: 192.168.22.210
Controller protocol: ssl
Controller port: 4321
Controller connection: up
Controller seconds-
Controller seconds-
Controller last-eror: Broken pipe
Controller connection status: active
{master:0}
root@bng-
Count: 210000 lines
root@nodei6:~# netstat -anp | grep 4321
tcp 0 0 0.0.0.0:4321 0.0.0.0:* LISTEN 8467/haproxy
tcp 0 0 192.168.22.1:43217 192.168.22.210:5673 ESTABLISHED 31464/python
tcp 0 0 192.168.22.1:47390 192.168.22.4:4321 ESTABLISHED 8467/haproxy >>> connection between QFX and
tcp 0 0 192.168.22.1:43211 192.168.22.210:5673 ESTABLISHED 31436/python
tcp 0 0 192.168.22.210:4321 192.168.11.1:65408 ESTABLISHED 8467/haproxy
tcp 0 0 192.168.22.210:5673 192.168.22.1:43211 ESTABLISHED 8467/haproxy
tcp 0 0 192.168.22.210:5673 192.168.22.1:43217 ESTABLISHED 8467/haproxy
root@nodei6:~# date
Wed Jun 10 19:02:44 IST 2015
root@nodei6:~# netstat -anp | grep 4321
tcp 0 0 0.0.0.0:4321 0.0.0.0:* LISTEN 8467/haproxy
tcp 0 0 192.168.22.1:43217 192.168.22.210:5673 ESTABLISHED 31464/python >>> connection broken
tcp 0 0 192.168.22.1:43211 192.168.22.210:5673 ESTABLISHED 31436/python
tcp 0 0 192.168.22.210:4321 192.168.11.1:56585 ESTABLISHED 8467/haproxy
tcp 0 0 192.168.22.210:5673 192.168.22.1:43211 ESTABLISHED 8467/haproxy
tcp 0 0 192.168.22.210:5673 192.168.22.1:43217 ESTABLISHED 8467/haproxy
root@nodei6:~# date
Wed Jun 10 19:05:10 IST 2015
information type: | Proprietary → Public |
Changed in juniperopenstack: | |
importance: | Undecided → High |
assignee: | nobody → Prabhjot Singh Sethi (prabhjot) |
tags: | added: blocker |
Hit the problem even with 64K mac .
Increasing keep alive time to 5min and then did not see the issue.
# OVS keep alive timer interval in milliseconds interval= 300000
tor_keepalive_