09-06-2007 08:02 AM
Hi,
I wan to cofigure my CSS to advertise VIP addresses through ospf. Everything is fine untill I want to use SSL termination on these VIP addresses. This is because the contents for SSL terminations ares always in "Alive" state. They dont observe the backend services, but the ssl-accel type service, whitch is always up till the SSL module working fine. So the VIP address is advertised whatever is with the backend services.
Cisco TAC told me, the only way to workaround this issue is to write a script, witch is monitors the health of the backend services and "suspend" the ssl-accell service. Of course this is not a good solution, because all the SSL services will droped on the CSS. But I hope, there is a way to write a script to automatic suspend the SSL content rule, or unconfigure the ospf adveritse entry for that VIP.
Did anyone already write such a script on CSS? Or any similar for that. I'm not really a scripting master, thats why I ask for some help!
Thanks!
09-12-2007 09:09 AM
Could you send the output of
show disk
show core
10-25-2007 03:00 AM
I'm not sure, why these are important, but here they are.
css-bnscp-2# sho disk
PCMCIA Slot: 0
total # of clusters: 62544
bytes per cluster: 16384
free clusters: 50167
bad clusters: 0
free bytes: 821936128 (821 MB)
max contiguous free bytes: 766820352 (766 MB)
files: 1382
folders: 72
total bytes in files: 187126808
lost chains: 0
total bytes in lost chains: 0
css-bnscp-2# sho core
SSL-20201_08.10.1_06.0.gz 27 SEP 18:08:32 15277248
SSL-20201_08.20.1_01.0.gz 27 SEP 18:54:04 15234744
SSL-20201_08.10.3_01.0.gz 18 OCT 12:35:38 15233850
Regards:
Tamas
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide