Pods experience intermittent packet drop when Antrea NetworkPolicy logging enabled
search cancel

Pods experience intermittent packet drop when Antrea NetworkPolicy logging enabled

book

Article ID: 312457

calendar_today

Updated On:

Products

VMware NSX Networking

Issue/Introduction

Symptoms:
Pod may experience packet drop during burst traffic when Antrea NetworkPolicy logging enabled 
Use ovs-ofctl to check if packet drop shows in this meter.

ovs-ofctl -OOpenFlow13 meter-stats br-int

OFPST_METER reply (OF1.3) (xid=0x2):
meter:1 flow_count:0 packet_in_count:26496119 byte_in_count:4622320365 duration:3732145.188s bands:
0: packet_count:51671 byte_count:9472467

meter:2 flow_count:0 packet_in_count:3 byte_in_count:126 duration:3732145.188s bands:
0: packet_count:0 byte_count:0

Above shows 51671 packets dropped by this meter


Cause

A logging meter in Antrea OVS might prevent burst traffic

Resolution

Currently no resolution

Workaround:
1. Disable logging on the default ACNP resources, which include the rules to be applied to all Pods in the cluster
2. Add a more concret ANP rule to apply to limited Pods with logging enabled if it is required