[pve-devel] corosync, multicast problem because of vmbr multicast_snooping enabled

Michael Rasmussen mir at datanom.net
Sat Mar 9 15:30:44 CET 2013


On Sat, 09 Mar 2013 09:56:19 +0100 (CET)
Alexandre DERUMIER <aderumier at odiso.com> wrote:

> 
> 
> Some more infos about igmp queries.
> 
> We can have only 1 igmp quierier on a vlan. If multiple quierier exist, an election mecanism exist, and the querier with lowest ip should win.
> 
> So it's possible that a proxmox host, is the igmp quierier for your whole network. (including physical switches).
> 
> I think it can be pretty bad, as if you have some host problem (network driver, bridge bug, iptable filter,...), it can break igmp response and 
> may cause potentential igmp snooping break.
> Also if you reboot the host which is the igmp quierier, a new election will occur.
> 
> So disable igmp query on linux bridge should be disable by default. 
> 
From what I have read about the IGMP implementation in Linux then igmp
quierier is optional and disabled by default since the task of acting
as quierier is normally an infrastructure task in which case you expect
the network components like switch or router to take care of this. This
is especially the case if the nearest switch is a stacked switch in a
larger network where you would expect the IGMP snooping to be carried
over the trunk port.

Therefore I always configure a dedicated switch on the infrastructure
to be the quierier on a specific vlan in which case you can add as many
proxmox host you like to an infrastructure and have multicast working
out of the box. This is the recommended setup by Cisco, Juniper and HP
(maybe also others recommend this but I have no experience with other
than the mentioned)

Attached are my configuration on a HP V1910 switch.



-- 
Hilsen/Regards
Michael Rasmussen

Get my public GnuPG keys:
michael <at> rasmussen <dot> cc
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xD3C9A00E
mir <at> datanom <dot> net
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE501F51C
mir <at> miras <dot> org
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xE3E80917
--------------------------------------------------------------
You will be married within a year, and divorced within two.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screenshot.png
Type: image/png
Size: 32650 bytes
Desc: not available
URL: <http://pve.proxmox.com/pipermail/pve-devel/attachments/20130309/e6d528f1/attachment-0002.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Screenshot-1.png
Type: image/png
Size: 22369 bytes
Desc: not available
URL: <http://pve.proxmox.com/pipermail/pve-devel/attachments/20130309/e6d528f1/attachment-0003.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: not available
URL: <http://pve.proxmox.com/pipermail/pve-devel/attachments/20130309/e6d528f1/attachment-0001.pgp>


More information about the pve-devel mailing list