set ip next-hop with CSS-11503 clients don't get response from

From: Jason Aarons (US) <jason.aarons_at_us.didata.com>
Date: Sun, 23 May 2010 09:41:42 -0400

www-VIP 67.0.9.100
CSS-11503 67.0.9.10/24
       |
6509-DR-A-------trunk---6509-DR-B
67.68.10.1/24
67.68.10.2/24
   |
   |
   |
  1GB TRUNK
   |
   |
   |
6509-HQ-A------trunk-------------6509-HQ-B
67.68.10.3/24
67.68.10.4/24
            |
|
HQ Client get 67.0.9.100 Route-map css
FireFox or IE no
response Set ip next-hop 67.0.9.10
|
WWW-Server
67.32.1.100

I have 4 6500s all with MSFCs doing routing, however VLANs
are trunked across all 4 and HSRP is setup.

I noticed packets sent to a
CSS-11503 VIP 67.0.9.10 get routed to real www-server 67.32.1.100 but don't
make it back to the client that made the http request. Real servers in the DR
area work just fine. Have to route all www into CSS and the return path has to
go back thru CSS thus the route maps. www servers at DR work fine, but adding
a hq www server seems to be asymmetrical traffic (packets from hq aren't
flowing back thru css).

Just wondering if "ip next-hop" requires a directly
connected ? Is DR-A adjacent to HQ-B as per the next-hop command reference? I
also need to go onsite Monday and better understand the running-configs on
these 6509s. Could be I'm mistaken on how they are configured! It's a complex
problem and I'm likely overlooking/misunderstand something.
-----------------------------------------
Disclaimer:

This e-mail
communication and any attachments may contain
confidential and privileged
information and is for use by the
designated addressee(s) named above only.
If you are not the
intended addressee, you are hereby notified that you have
received
this communication in error and that any use or reproduction of
this
email or its contents is strictly prohibited and may be
unlawful. If you have
received this communication in error, please
notify us immediately by replying
to this message and deleting it
from your computer. Thank you.

Blogs and organic groups at http://www.ccie.net
Received on Sun May 23 2010 - 09:41:42 ART

This archive was generated by hypermail 2.2.0 : Tue Jun 01 2010 - 07:09:53 ART