tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Howto use agr to aggregate VPN tunnels

On Thu, Dec 15, 2016 at 11:21:08AM +0100, BERTRAND Jo??l wrote:
> 	For me, ingoing packets revceived by tap0 and tap1 are sent to agr0, but
> not outgoing packets.

So packets you send out agr0 (and see in the agr0 tcpdump output) do not appear
in the output for either tap0 or tap1?  I just want to be sure.

Did you have the tap0 and tap1 interfaces in the "up" state *BEFORE* attaching
them to the agr?  I ask because this sounds like the internal state machine in
agr has not moved to the "distributing" state where it sends packets out each
attached interface -- like there is a LACP or other failure, and I bet attaching
the underlying interfaces while they are not "up" is a good way to get stuck
like that.

I also wonder whether openvpn is transmitting the LACP PDUs across the link.
Do you see them on the far end when you tcpdump the underlying tap interfaces?

All in all this is a pretty awful way to get ECMP.  Even if you get it going,
are you sure it's worth the trouble?

 Thor Lancelot Simon	                            
			Ring the bells that still can ring.

Home | Main Index | Thread Index | Old Index