Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 622
  • Last Modified:

Traffic in Microsoft Network Load Balance

Hello.

I just implemented a NLB for Terminal Services in 3 Windows 2003 Standard Servers. Connection distribution looks working fine, but if I have one active connection and I take a look at the network card's traffic in any other computer in the network, I can see the traffic from the client to the NLB cluster. So, looks like my network switch is doing a broadcast for traffic destinated do the cluster's IP address.

The NLB is configured with only one network card in each server and running in multicast mode.

Why is this happening and how can I resolve this?

Regards.
0
Abilis
Asked:
Abilis
  • 4
  • 4
2 Solutions
 
giltjrCommented:
What type of switches do you have?  Does it support IGMP snooping?

What is the MAC address for the traffic going to the cluster?

You do realize that multicast is a "special" type of broadcast.
0
 
AbilisAuthor Commented:
It is a 3Com Baseline 2848-SFP Plus. I'm not sure if it supports IGMP snooping, but for what I saw on the web, it does.
The MAC address I see in the dumps is the same as the one configured in the cluster.
The one in the cluster properties is 03:bf:c0:a8:00:18. In the dump is the same. Take a look the attached image.

Yeah, I know it works different from a normal unicast packet, but I'm not very familiar with multicast. I wonder if this is a normal condition.

Thanks
dump.jpg
0
 
giltjrCommented:
0
NEW Veeam Backup for Microsoft Office 365 1.5

With Office 365, it’s your data and your responsibility to protect it. NEW Veeam Backup for Microsoft Office 365 eliminates the risk of losing access to your Office 365 data.

 
AbilisAuthor Commented:
So, if I understand right, with the IGMP snooping my problems would be solved.
If my switch doesn't have it and if it doesn't allow to add static arp entries, I'm lost.

Is that correct?
0
 
giltjrCommented:
0
 
AbilisAuthor Commented:
My switch is the 2848, not the 2948.
http://www.3com.com/products/en_US/detail.jsp?tab=features&sku=3C16486&pathtype=purchase

So I guess I'll have to change to another switch?
0
 
giltjrCommented:
Well that is one option.

Do you happen to have a router or another L3 switch in the network?

If so, you could create a VLAN for the Windows server and isolate it at the VLAN level.

The only issue with doing this is that you need to have router to route between the two IP subnets.
0
 
AbilisAuthor Commented:
I don't have layer 3 switch yet. I'm going to monitor de traffic and see if it is a problem for now.
Maybe I'll use our internal router and use the VLAN schema. Probably it is better then having this "broadcast" all the time for every terminal connection.

Thanks for your help.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

  • 4
  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now