Why keepalived node drops intake packets aimed towards VIP?
Issue
After initial configuration and startup of keepalived service load balancing doesn't work and we can see there's new iptable rule created in INPUT chain.
Chain INPUT (policy ACCEPT 215K packets, 79M bytes)
pkts bytes target prot opt in out source destination
33 1700 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 match-set keepalived dst
Environment
Red Hat Enterprise Linux 7
Keepalived
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
