SSL Visibility Appliance

 View Only
  • 1.  TCP Keep-alive

    Posted Aug 24, 2018 12:29 PM

    Hello,

    As a support we received case where problem was with TCP Keep-Alive implementation in the SSL Visbility.

    We had situation with redundancy doing on the L2 based on mac addresses. During a failover, SSL-Visibility propagate mac addresses upstream devices which was passive and it caused the loss of internet connection. There was no traffic from this device to the SSL-V, but during a investigation we discover that SSL-Visbility send ACK Keep-Alive packets which caused the issue.

     

    So, there is a possibility to implement possibility of turning off using TCP Keep-Alive? I know that Keep-Alive option is often used to keep long TCP session, but maybe there is a possibility to implement mechanism which will allow for turning this off/turning this on depending on the needs.

     

    Thank you in advance,

    Marcel Wolczynski