HA vrrp address stops responding
I am in the proces of setting up a firebox V cluster on VMware.
VMware ESXi, 7.0.3, 19482531
Fireware 12.7.2 U2
Promiscuous mode = enable
address changes = enabled
Forged transmits = enabled
Forged Transmits = Accept
All mac addresses on members is:
They are both using VMXNET3 adaptor.
All is setup and cluster (id 50) is running with no problems reported. Access from external to the public ip works no matter who is master. Cluster has been running for 2 weeks.
Today we powered a VM up behind the cluster but we could not get traffic routed through the cluster. The cluster vrrp ip address did not repsond to ping, but both members management addresses was responding to ping and the firebox arp tabled listed the VM mac/ip address. Management access from external to public ip was working.
We are renting a virtual datacenter and my provider asked me to turn of one of the members. As soon as i turn of the cluster master the internal vrrp address started to respond to ping and traffic was routed through the new master device fine.
Afterwords i tried every combination of master/slave, power on/off, failover and it works. I am clueless.
Of cause i will have to test futher, but any idea why the cluster stopped accepting traffic to the internal vrrp address?