Forum Discussion

dragonflymr's avatar
dragonflymr
Icon for Cirrostratus rankCirrostratus
Nov 23, 2016

Multi interface VLAN and VLAN Failsafe

Hi,

 

I was not able to find definitive answer in docs and I have problem to do real life test, so maybe someone used described configuration and did testing - will appreciate info how such setup behave.

 

Configuration

 

  • Active-Standby cluster
  • VLAN A with interface 1.3, 1.4, 1.5 assigned
  • VLAN Failsafe set on VLAN A with Failover as action
  • Three servers each containing 2 NIC
  • IPs used by servers defined as Nodes and used by Pool assigned to VS
  • Interface 1.3 connected directly to NIC1 on Server A, 1.4 to NIC1 on Server B etc.
  • Same connection on Standby unit using NIC2 on servers (HA between NIC on servers somehow managed by servers itself, have no info how it is configured but at given time IP assigned to server is always linked to MAC of only one NIC)

I wonder how failsafe will behave assuming scenario below

 

  • Let's say that Server A crashed or was power off
  • Considering above there is not network traffic on BIG-IP interface 1.3
  • Servers 2 and 3 are working OK, so there is traffic on interfaces 1.4, 1.5

Considering that failsafe is set on VLAN level not on interface level (and VLAN has three interfaces assigned, not trunk configured, just separate interfaces) will lack of network on one interface (1.3) will cause failover to Standby - even if traffic is detected on remaining two interfaces assigned to VLAN A?

 

Or detecting traffic on at least one interface assigned to VLAN A will prevent failover?

 

Piotr

 

2 Replies

  • If first option above is true (failover) then as an result failover loop can be expected - when Standby became Active it will as well not detect traffic on interface 1.3 so will try to failover - that is my major concern for described configuration. BTW - do not ask why it is configured like that, someone did that and now I have to deal with it :-(.

     

    Piotr

     

  • From my understanding as long as there is traffic on a VLAN which has VLAN failsafe configured, you will not experience a failover. Although I'd want to lab this up to confirm.

     

    Have you considered using HA-Groups? You would get much more granular control on how failover occurs, in addition it will happen more quickly - default VLAN failsafe failover will take 90 seconds.