Bug ID 430108: CGNAT - all traffic stops after failover with connection limits enabled

Last Modified: Jul 12, 2023

Affected Product(s):
BIG-IP CGN(all modules)

Known Affected Versions:
11.2.1, 11.3.0, 11.4.0, 11.4.1

Fixed In:
11.5.0, 11.4.1 HF2, 11.4.0 HF4

Opened: Sep 09, 2013

Severity: 2-Critical

Related Article: K15644

Symptoms

After a failover, all traffic for any connected subscribers may stop completely. The command "lsndb list client" shows connection counts at the limit.

Impact

After a failover, all traffic for any connected subscribers may stop completely.

Conditions

This happens when an LSN pool with the connection-limit set to greater than 0 fails over with active connections.

Workaround

To work around this problem, disable connection mirroring and disable session mirroring.

Fix Information

Connection limits are now managed correctly on the standby device so that connection limits are not exceeded erroneously.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips