Project

General

Profile

Actions

Bug #10634

closed

Sticky connections not working with dual WAN

Added by David Askew over 4 years ago. Updated over 4 years ago.

Status:
Not a Bug
Priority:
Normal
Assignee:
-
Category:
Multi-WAN
Target version:
-
Start date:
06/04/2020
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.4.5
Affected Architecture:

Description

I have sticky connections enabled and have been having issues browsing more than one site that requires me to login (one site is owned and operated on my own server at a separate location and only has 1 IP address) but keep getting thrown back to the login screen. This has also been happening on banking websites and others.

I have confirmed on my own remote server that it is due to the IP changing and as said I have sticky connections enabled.

This happens within a minute or two so it's not due to the states but I tried setting it to 1200 seconds, killing states and browser sessions to be sure and trying again. But still no luck it still happens.

To confirm my setup I have 2 Fibre connections in the UK and they are not dropping out and are very stable and the following settings are set:
System > Routing > Gateways > Default gateway IPv4: LoadBalance (Load Balancing Group)
System > Routing > Gateways > Gateway Groups: Group Name: LoadBalance - Priority: Both set to: Tier 1 - Trigger Level: Trigger Level
Firewall > Rulesc > vLAN 1 > Outbound Rule set to: LoadBalance Group

Thanks.


Files

1.png (72.6 KB) 1.png Gateways David Askew, 06/04/2020 08:40 AM
2.png (53.4 KB) 2.png Gateway Groups David Askew, 06/04/2020 08:40 AM
3.png (87.9 KB) 3.png Gateway Group Settings David Askew, 06/04/2020 08:40 AM
4.png (159 KB) 4.png Firewall Rules Overview David Askew, 06/04/2020 08:40 AM
5.png (356 KB) 5.png Outbound Rule Settings David Askew, 06/04/2020 08:40 AM
Actions #1

Updated by David Askew over 4 years ago

To clarify when I said, "it's not due to the states but I tried setting it to 1200 seconds", I was referring to the "source tracking timeout for sticky connections" setting.

Actions #2

Updated by Jim Pingle over 4 years ago

  • Category changed from Load Balancer to Multi-WAN
  • Status changed from New to Not a Bug

There isn't enough information here to definitely say there is a bug, it could very well be a configuration or test issue of some kind. Since this site is not for support or diagnostic discussion, please post on the Netgate Forum.

If, after more discussion and diagnosis, an actionable bug is discovered, then we can open a new issue with more accurate details.

Actions

Also available in: Atom PDF