cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
541
Views
0
Helpful
3
Replies

ACE Routing Load-Balance problem

ricardoccnp2005
Level 1
Level 1

I'm trying to configure a routing load-balance with Cisco ACE Module based on the following scenario:

local users has a router (R1) as it default gateway, this router (R1) has a default route to the VIP that represent the serverfarm with two linux servers that should be used for Data Shaping over the WAN. I need to balance the traffic over the two linux servers and not necessary over the WAN.

The problem is that when I set up the local network router default route to VIP the routing process simply stop work ! If I change the route to the real server ip address everything start working again without any problem.

Follow the configs:

Local network Router - Static route

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

ip route 0.0.0.0 255.255.255.0 10.0.0.1 (VIP address)

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Follow the ACE configs:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

access-list 100 line 8 extended permit ip any any

rserver host rout001

ip address 10.0.0.32

inservice

rserver host rout002

ip address 10.0.0.31

inservice

serverfarm host BLC_ROUTING

predictor leastconns

rserver rout001

inservice

rserver rout002

inservice

class-map match-any VIP

2 match virtual-address 10.0.0.1 any

class-map type management match-any mgmt

2 match protocol icmp any

3 match protocol telnet any

4 match protocol ssh any

policy-map type management first-match access

class mgmt

permit

policy-map type loadbalance first-match INT_router

class class-default

serverfarm BLC_ROUTING

policy-map multi-match VIP

class VIP

loadbalance vip inservice

loadbalance policy INT_router

loadbalance vip icmp-reply

interface vlan 6

bridge-group 10

access-group input 100

service-policy input access

service-policy input VIP

no shutdown

interface vlan 8

bridge-group 10

access-group input 100

service-policy input access

service-policy input VIP

no shutdown

interface bvi 10

ip address 10.0.0.5 255.255.255.0

no shutdown

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

I tried to change some parameters like "transparent" at serverfarm config and change the "predictor" method to "hash address source" but there was no good results at all.

Anyone has any idea why this process is not working ?

Is there any special configuration for this scenario ?

Regards,

Ricardo

3 Replies 3

blade_ace
Level 1
Level 1

Your image shows the VIP and the default gateway have the same ip address. I think that might be your issue.

Hi,

Did u try a static route in the router

ip route 10.0.0.0 255.255.255.0 10.0.0.5

with regards

sathappan.s

Gilles Dufour
Cisco Employee
Cisco Employee

Ricardo,

What is this route ??

ip route 0.0.0.0 255.255.255.0 10.0.0.1 (VIP address)

You can't have 0.0.0.0/24.

You must be missing something ?

Also, since the vip is part of a vlan with subnet 10.0.0.0/24 you don't need to add a static route to reach that vip.

It should normally be directly connected to your router.

With the static route, do you see traffic coming to the ACE module ?

Does it loadbalance to the server ?

'show service-policy detail' check the packet counters

Gilles.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: