ONTAP 报告S3层不可用的TLS握手超时
适用场景
- StorageGRID 11.6.
- FabricPool 解决方案
- ONTAP 9.10.1P7
- 硬件负载平衡器下的冗余StorageGRID网关节点。
- StorageGRID网关节点上的原有CLB服务。
问题描述
事件中的ONTAP FabricPool报告:
Tue Jan 17 02:15:42 +0000 [eu-cfiler05-01: ktlsd: ktls.failed:notice]: "The TLS connections have failed several times with remote host '10.11.92.84' in IPspace '4294967295', for which the latest reason given is: TLS: Handshake timed out.
Tue Jan 17 02:17:03 +0000 [eu-cfiler05-01: OscHighPriThreadPool: object.store.unavailable:EMERGENCY]: Unable to connect to the object store "xx-s3" from node xxxxxx-709d-11ec-8271-d039ea380eaa. Reason: Internal server error.
Tue Jan 17 02:17:03+0000 [eu-cfiler05-01: OscLowPriThreadPool: object.store.available:notice]: Able to connect to the object store "xx-s3" from node xxxxxx-709d-11ec-8271-d039ea380eaa.
在检查两个网关节点上的kernel.log时、我们会看到:
Jan 17 01:03:46 localhost kernel: [5006170.113426] TCP: request_sock_TCP: Possible SYN flooding on port 8082. Sending cookies. Check SNMP counters.
Jan 17 02:36:29 localhost kernel: [5011732.576329] TCP: request_sock_TCP: Possible SYN flooding on port 8082. Sending cookies. Check SNMP counters.
连接将在没有任何用户干预的情况下恢复。