Skip to main content

VPN 3030 load balancing

More
13 years 8 months ago #35323 by Dove
VPN 3030 load balancing was created by Dove
nnbnbHi All,

I have been asked to setup the load balancing between two Cisco VPN Concentrator (Cisco VPN 3030).

I have configured both the boxes as mentioned in cisco website

www.cisco.com/en/US/products/hw/vpndevc/...186a0080094b4a.shtml

After enabling the VPN load balancing I am getting the belwo error message for every 30 Seconds.

LBSSF detected duplicate master[0003a0889463] and going to SLAVE



One of my friend told me that try with out encryption enabled but no differents.

I have searched in google but didn't got any solution. I am hlepless now. If any of you guys have encountered this kind of issue before could you please help to fix this issue...

Thanks


Dove
More
12 years 6 months ago #37481 by Dove
Replied by Dove on topic Re: VPN 3030 load balancing
I am back after a long time... :)

I have fixed this issue and thought to post the solution it would help someone else..

All I did is very simple.. :)

In our infrastructure the VPN concentrators are connected behind the firewall. The outside interface of VPN concentrators are configured with private IP address.. All I did initially was just created a one to one NAT for VIP address as I was assuming only the VIP address would be visible to user (just like how load balancer works) but that is not the case. We need to create the the Static nat for both VPN Conc.. Outside IPs.

In total I have created 3 NAT for

1 for VIP
2 For VPN Concentrator Outside interface (VPN Device A and VPN Device B)

Phew....carelessness... dragged this issue for long time to fix...


:)


Dove
The following user(s) said Thank You: Chris
More
12 years 6 months ago #37485 by TheBishop
Glad you fixed it, and we appreciate you sharing the solution
More
12 years 6 months ago #37486 by Chris
Replied by Chris on topic Re: VPN 3030 load balancing
Thanks for sharing the solution with us Dove - highly appreciated!

Chris Partsenidis.
Founder & Editor-in-Chief
www.Firewall.cx
Time to create page: 0.147 seconds