Open joebride opened 3 months ago
@joebride From the ltm logs, it looks like AS3 issue.
Configure CIS log level to AS3DEBUG and share CIS logs to investigate any issues with CIS.
@joebride please let me know if you need some assistance. Could we setup sometime to chat. BTW nice issue number 3500!!
@mdditt2000 : yes, assistance is needed. I will contact you directly...
Any update on this? We face this issue frequently and only fix we know of is to scale CIS controller down and back up.
@walkingtub recommend try CIS 2.18.1 and share your findings. IMO this issue might be from BIG-IP/AS3.
Setup Details
CIS Version : 2.17.1
Build: f5networks/k8s-bigip-ctlr:latest
BIGIP Version: Big IP17.1.1.3 Build 0.211.5
AS3 Version: 3.46.2 Agent Mode: AS3 Orchestration: K8S
Orchestration Version: OpenShift Pool Mode: Cluster Additional Setup details:
Description
CIS runs in OpenShift environment and listens to OS-Routes using route-label and name-space-label (see attached CIS-arguments). It regularly reports these 503 error-messages
I tried different versions of CIS (v2.13.1, v2.16.1) but error occurs again.
Expected Result
BIG-IP accepts AS3 data without 503/409 errors.
Actual Result
BIG-IP sends 503/409 errors when receiving AS3-declartion
Diagnostic Information
CIS-arguments
On BIG-IP I see these log-entries matching time-stamps of CIS-log entries: /var/log/ltm
/var/log/restjavad-audit.0.log