Recommended Posts

Hi All.

I am currently in the middle of a data centre migration, moving from physical boxes to virtual but as part of it I am also separating systems that don't seem to play nice together. So the setup is like this;

3 sites, Site A, B and C. all connected via and MPLS circuit to our new ISP who then routes traffic to the new vDC (virtual data centre). The internet breakout for the users is also at the ISP but all web/public facing servers in the vDC breakout from the vDC. This way if the link between ISP and vDC went down we would still be functional albeit at a reduced capacity.

This means the servers in the vDC that are not public facing have a gateway ending in 200.254 so all traffic is routed back to the MPLS network. The servers that are public facing have a gateway ending in 200.1 which is the gateway at the vDC but persistent routes forwarding all MPLS traffic to the 200.254 GW.

I am based in Site A and this works perfectly for me. I can access all the servers and all the web facing ones are still routing traffic to the public domain when requested. Site C is the same. Site B however where the team who need to test the new servers is based can ping some but not all of the servers. To confuse the matter a little more, some users are able to ping more servers than others and one isn't able to ping any.

So this is what I have done.

Removed the static route and added it again.

Cleared the TCP/IP stack and reset the winsock catalogue re-adding the static routes again.

Reset the server between each step of the above and have done the same on the servers and client PC.

Tried using Wireless and cabled connections as the client is on a laptop.

The servers that the client is unable to connect to is Server 2003 R2 and 2008 R2, the client is on Win 7 x64.

I suspect that there is something obvious that I am missing but looking at this problem for a couple of days and I cant see it.

Any thoughts?

Link to comment
https://www.neowin.net/forum/topic/1132064-inconsistent-routing-issue/
Share on other sites

I have done a tracert from both the client and the new server and each time it hits the correct gateway but times out thereafter. I can also ping the gateway in the DC from the site and vice versa. If it was a routing issue wouldn't it be more of an all or nothing scenario?

I also thought about firewalls so all are disabled on the servers (and will stay that way) but no change.

I am going to get the ISP to check routing between the sites, this site only has one difference to the other 2 which is it is an FTTC connection but I cant see this making any difference.

first thing to check is to see if the routers on each site have the same routing tables for your 3 different networks. If you add a new route at site A then site B and site C should have it within a few seconds (if your using cisco equipment and same eigrp instance).

What you dont want to end up with is site B trying to contact site A- but its routing traffic through to Site C to get to site A. Using Microsoft Network Monitor (download from google) and install on client machine and you will be able to see where his request are going to.

All resolved.

It seems that there was a configuration issue on one of the routers, it seems like they set all the routes the same but from their email it seems like it is a little different if coming through an FTTC connection. So now all servers and clients are connecting as they should.

Anyway, thanks for the input.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Vivaldi version 8.0.4033.50 released June 17: https://vivaldi.com/blog/desktop/minor-update-eight-8-0/
    • The Online part hasn't even been announced and probably won't be included on day one. This is a massive singleplayer game.
    • While I agree with all that, it just proves there's an a** built for every seat.
    • Lol are you mad because I'm not using AI? I'd rather pay people than lose a bunch of potential customers and get humilated because I used AI. A lot of people won't purchase a game if it used AI during development.
    • LibreWolf 152.0-1 by Razvan Serea LibreWolf is an independent “fork” of Firefox, with the primary goals of privacy security and user freedom. It is the community run successor to LibreFox. LibreWolf is designed to increase protection against tracking and fingerprinting techniques, while also including a few security improvements. This is achieved through our privacy and security oriented settings and patches. LibreWolf also aims to remove all the telemetry, data collection and annoyances, as well as disabling anti-freedom features like DRM. LibreWolf features: Latest Firefox — LibreWolf is compiled directly from the latest build of Firefox Stable. You will have the the latest features, and security updates. Independent Build — LibreWolf uses a build independent of Firefox and has its own settings, profile folder and installation path. As a result, it can be installed alongside Firefox or any other browser. No phoning home — Embedded server links and other calling home functions are removed. In other words, minimal background connections by default. User settings updates Extensions firewall: limit internet access for extensions. Multi-platform (Windows/Linux/Mac/and soon Android) Community-Driven Dark theme (classic and advanced) LibreWolf privacy features: Delete cookies and website data on close. Include only privacy respecting search engines like DuckDuckGo and Searx. Include uBlockOrigin with custom default filter lists, and Tracking Protection in strict mode, to block trackers and ads. Strip tracking elements from URLs, both natively and through uBO. Enable dFPI, also known as Total Cookie Protection. Enable RFP which is part of the Tor Uplift project. RFP is considered the best in class anti-fingerprinting solution, and its goal is to make users look the same and cover as many metrics as possible, in an effort to block fingerprinting techniques. Always display user language as en-US to websites, in order to protect the language used in the browser and in the OS. Disable WebGL, as it is a strong fingerprinting vector. Prevent access to the location services of the OS, and use Mozilla's location API instead of Google's API. Limit ICE candidates generation to a single interface when sharing video or audio during a videoconference. Force DNS and WebRTC inside the proxy, when one is being used. Trim cross-origin referrers, so that they don't include the full URI. Disable link prefetching and speculative connections. Disable disk cache and clear temporary files on close. Disable form autofill. Disable search and form history...and more. LibreWolf 152.0-1 changelog: Upstream release, see the Firefox 152.0 Release Notes Notable changes: The AppImages are now built on Codeberg along with the other releases We have decided to wait a bit longer to enable the settings redesign, due to use being aware of multiple upstream issues Download: LibreWolf 64-bit | Portable 64-bit | ~100.0 MB (Open Source) Download: ARM64 | Portable ARM64 Links: LibreWolf Home Page | Addons | Screenshot | Reddit Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • Week One Done
      Huge Trailer earned a badge
      Week One Done
    • Week One Done
      Classifyskilleducation earned a badge
      Week One Done
    • One Month Later
      eurospharma62 earned a badge
      One Month Later
    • Week One Done
      With What earned a badge
      Week One Done
    • Week One Done
      Harris Gilbert earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      560
    2. 2
      +Edouard
      169
    3. 3
      PsYcHoKiLLa
      73
    4. 4
      Michael Scrip
      64
    5. 5
      ATLien_0
      64
  • Tell a friend

    Love Neowin? Tell a friend!