If TTL Setting fails then what needs to be done.
search cancel

If TTL Setting fails then what needs to be done.

book

Article ID: 383019

calendar_today

Updated On:

Products

CA API Gateway

Issue/Introduction

We are facing a strange issue where we see that DNS switch IP association in less than 8seconds but GWs take up to 5 minutes to recognize the change.
As per the article https://knowledge.broadcom.com/external/article?articleNumber=12118 we confirm we have the setting to 10, which means 10 second TTL (in attachment the file we have in our environment).

Can you confirm that the -Dsun.net.inetaddr.ttl is still correct and it didn't change going into the new JAVA version used by layer7 11.0 and 11.1 ?

Environment

11.0

Resolution

Collect tcpdumps from machine, from first test we see that the error is in an external DNS remap, It was corrected and then the below value was added in the path /opt/SecureSpan/Gateway/runtime/etc/profile.d/ssgruntimedefs.sh 

Dnetworkaddress.cache.ttl=10 

Additional Information

https://knowledge.broadcom.com/external/article?articleNumber=12118