When an Avi load balancer with a Service Engine (SE) Group configured for Active/Active or N+M high availability (with minimum scale-out set to 2 SEs) is deployed in a Cisco VXLAN or ACI environment, intermittent packet loss may occur.
Symptoms can include impact to the virtual service datapath, dropped client connections, and health monitor failures for backend servers and GSLB pool members.
Cisco ACI
Cisco VXLAN
Steps to enable tunnel mode on Avi service engine group:
$shell
> configure serviceenginegroup <se-group-name>
> se_tunnel_mode 1
> save
For a detailed explanation of the packet flow when Tunnel Mode is enabled, refer to this article: Packet Flow in Avi Load Balancer with Tunnel mode enabled
Cisco ACI design considerations: http://techdocs.broadcom.com/us/en/vmware-security-load-balancing/avi-load-balancer/avi-load-balancer/30-2/vmware-avi-load-balancer-installation-guide/installing-nsx-alb-in-cisco-aci-based-environments/networking-consideration/design-considerations-with-cisco-aci.html