JSF and load balancing issues

Hello,
We are having a difficult time getting our app to work correctly on our load balanced system. Any help / suggestions would be greatly appreciated.
We have a very basic load balancer which is in round robin mode (this cannot be changed), two separate vms, each with an instance of apache(2.0.54) and tomcat(6.0.14). Each apache talks only to the tomcat on the same vm and the tomcats are configured to session replicate with each other (which is happening).
When I log in to the app and start pressing a few buttons there are no problems for a little while. I then leave the screen idle for 1 minute and resume pressing buttons. The main session bean which holds information about where the user is and other key information, gets its constructor called and is set back to default and the page goes back to the main menu. Immediately before the bean is reset, the logs show the following:
[MyApp] 17 Jun 2009 15:33:27,514 WARN: [ajp-8009-2 LoggerListener.onApplicationEvent(60)] : Authentication event AuthenticationSuccessEvent: v; details: (etc etc removed…)This is what the two logs look like:
VM1 - Authentication event          
VM2 - Main menu
VM2 - Presss a button – progress a screen
VM2 - Presss a button – progress a screen
VM2 - Presss a button – progress a screen
VM2 - Presss a button – progress a screen
[wait 1 min]
VM1 - Authentication event
VM1 - Bean reset
Processing continues, but screen is redirected to main menu
We have the distributable tag in the web.xml file and javax.faces.STATE_SAVING_METHOD is set to client. Its set to client as the app will not work at all with it set to server (keeps asking for the user to re-log in).
Thank you,
Victoria

Looks like a Tomcat issue to me. JSF is not going to timeout in 1 minute. You might want to check your Tomcat replication settings. Note try to do a very simple loadbalancing application that just echos the Tomcat is executing on.

Similar Messages

  • LWAPP-3-REPLAY_ERR and load balancing issue

    Guys, I was trying to troubleshoot this error in my WLC
    Nov 24 00:30:01 wlc1: *spamApTask5: Nov 24 00:30:01.883: #LWAPP-3-REPLAY_ERR: spam_lrad.c:35169 The system has received replay error on slot 0, WLAN ID 1, count 1 from AP 08:d0:9f:23:4f:e0
    I did some search and I was trying to check if there was any replay attack in the network but I don't know where to start and kept searching for other reasons, and got an anwser in other blog. And this issue could be related to a Load-balancing config.
    Eventhough,I've got Load-Balancing disable in all my WLAN's but still got these counters. How can I check if those are false positives?
    (wlc-1) >show load-balancing 
    Aggressive Load Balancing........................ per WLAN enabling
    Aggressive Load Balancing Window................. 10 clients
    Aggressive Load Balancing Denial Count........... 3 
                                                        Statistics
    Total Denied Count............................... 17682 clients
    Total Denial Sent................................ 30891 messages
    Exceeded Denial Max Limit Count.................. 5032 times
    None 5G Candidate Count.......................... 206270 times
    None 2.4G Candidate Count........................ 5040 times
    In the GUI the Load-Balancing is DISABLED per WLAN.

    yes, even I've upgraded my entire campus to 1702i and 2702i lightweight AP's with 8.0.115.0 code in my WLC I still got huge amount of LWAPP Replay Erros, please check the summuary of erros during yesterday..
         14 APF-1-CONFLICT_IN_ASS_REQ: apf_80211.c
         14 APF-3-CHECK_EXT_SUPP_RATES_FAILED: apf_utils.c
         14 APF-3-CHECK_SUPP_RATES_FAILED: apf_utils.c
         15 APF-3-NO_FRAMED_IP_ADDRESS: apf_radius.c
        638 APF-3-VALIDATE_DOT11i_CIPHERS_FAILED: apf_rsn_utils.c
        103 DOT1X-3-AAA_AUTH_SEND_FAIL: 1x_aaa.c
       2427 DOT1X-3-ABORT_AUTH: 1x_bauth_sm.c
         55 DOT1X-3-AUTHKEY_TX_TRANS_ERR: 1x_kxsm.c
         20 DOT1X-3-CLIENT_NOT_FOUND: dot1x_msg_task.c
       1365 DOT1X-3-INVALID_REPLAY_CTR: 1x_eapkey.c
         69 DOT1X-3-INVALID_WPA_KEY_MSG: 1x_eapkey.c
        296 DOT1X-3-INVALID_WPA_KEY_MSG_STATE: 1x_eapkey.c
          2 DOT1X-3-INVALID_WPA_KEY_STATE: 1x_eapkey.c
        923 DOT1X-3-WPA_SEND_STATE_ERR: 1x_kxsm.c
          7 DTL-3-ARP_CLIENT_IP_DUPLICATED: dtl_arp.c
          2 IPV6-3-CREATE_BINDING_FAILED: ipv6_net.c
          2 IPV6-3-ORPHAN_ADDR_LEARNING_FAILED: ipv6_net.c
          2 LOG-3-Q_IND: 1x_eapkey.c
          3 LOG-3-Q_IND: rrmChanUtils.c
         22 LOG-3-Q_IND: spam_lrad.c
       5120 LWAPP-3-REPLAY_ERR: spam_lrad.c
          2 LWAPP-3-VENDOR_PLD_VALIDATE_ERR: spam_lrad.c
          3 RRM-3-RRM_LOGMSG: rrmChanUtils.c
        615 RRM-3-RRM_LOGMSG: rrmLrad.c
          2 SISF-3-INTERNAL: sisf_shim_utils.c

  • Load balancing issues?

    Could someone help me with load balancing, current stats:
    I have a limited understanding, but from what I can make out, we have a significant number of clients being denied association and load balancing to different AP's but then the candidate count suggests a significant number of clients that failed to load balance, presumably because there wasnt an AP available in range that wasn't busy?
    Uptime is 27 days, client count can reach around 220 at busy times, 63 AP's in the building 1142's, 5508 controller. I am wondering if increasing the window size would offer a more robust solution, or will this just degrade user experience further?
    I am having a number of issues with failed client association now, and devices just not being able to operate wirelessly at all
    Client count reaching 25 on some AP's

    I guess per radio per AP client count is more in your case, clients more than the threshold are being shown busy status ( code 17 ) by AP. Therefore, clients are unable to associate to that AP. When the number of retries are over , they are denied. I guess there are network holes as well ( no coverage b/w the cells of differenet APs ). You can increase the window count , however, it depends on the AP model finally ( max. no. of  clients associated ).

  • ITS load balancing issue

    Hi all,
    During our testing we are getting a load balancing issue.  However, one of the agates in our network is has more CPU power than compared to the other agates in our ITS network.  The memory on all the agate servers is the same. 
    Our current issue we are getting is the one agate that has more cpu power but acquires more sessions as compared to the other two agates.  It roughly gets 60 more sessions per agate process as compare to the other Agate servers.  Does having more cpu on a Agate affect the load balancing on ITS?  We are on ITS patch level 19 with the Hotfix. 
    Thanks,
    Jin Bae

    Hello Jin,
    yes, at (re)initialize the WGate retrieves the capacity from the AGates.
    This is an accumulated number based on CPU performance and the number of CPUs!
    The number can be seen in "wgate-status" as the "Capacity" of the AGate.
    When running multiprocess Agates the number is retrieved from the MManager and also involves the number of agate-processes.
    The WGate dispatches the load in proportion depending on these capacity numbers.
    By my knowledge there is no way that these values can be configured (fixed).
    Regards,
      Fekke

  • VPN device with dual ISP, fail-over, and load balancing

    We currently service a client that has a PIX firewall that connects to multiple, separate outside vendors via IPSEC VPN. The VPN connections are mission critical and if for any reason the VPN device or the internet connection (currently only a T1) goes down, the business goes down too. We're looking for a solution that allows dual-ISP, failover, and load balancing. I see that there are several ASA models as well as the IOS that support this but what I'm confused about is what are the requirements for the other end of the VPN, keeping in mind that the other end will always be an outside vendor and out of our control. Current VPN endpoints for outside vendors are to devices like VPN 3000 Concentrator, Sonicwall, etc. that likely do not support any type of fail-over, trunking, load-balancing. Is this just not possible?

    Unless I am mistaken the ASA doesn't do VPN Load Balancing for point-to-point IPSec connections either. What you're really after is opportunistic connection failover, and/or something like DMVPN. Coordinating opportunistic failover shouldn't be too much of an issue with the partners, but be prepared for lot of questions.

  • SIP load balancing issue with ACE 4710

    SIP Load balancing Issue with ACE 4710
    I have a Cisco ace 4710 with vesion Version A4(2.2). i configued simple SIP load balancing first without stickiness. without stikeiness we are having a problem because bye packet at the was not going to the same server all the time that left our port in used even though user hang up the phone. its happen randmly. i have a total 20 licenced ports and its fill out very quickly. so i dicided to use the stickiness with call-ID but still same issue. below is the config
    rserver host CIN-VOX-31
      ip address 172.20.130.31
      inservice
    rserver host CIN-VOX-32
      ip address 172.20.130.32
      inservice
    serverfarm host CIN-VOX
      probe SIP-5060
      rserver CIN-VOX-31
        inservice
      rserver CIN-VOX-32
        inservice
    sticky sip-header Call-ID VOX_SIP_GROUP
      timeout 1
      timeout activeconns
      replicate sticky
      serverfarm CIN-VOX
    class-map match-all CIN_VOX_L4_CLASS
      2 match virtual-address 172.22.12.30 any
    class-map match-all CIN_VOX_SIP_L4_CLASS
      2 match virtual-address 172.22.12.30 udp eq sip
    policy-map type loadbalance sip first-match CIN_VOX_LB_SIP_POLICY
      class class-default
        sticky-serverfarm VOX_SIP_GROUP
    policy-map multi-match GLOBAL_DMZ_POLICY
       class CIN_VOX_SIP_L4_CLASS
        loadbalance vip inservice
        loadbalance policy CIN_VOX_LB_SIP_POLICY
        loadbalance vip icmp-reply
      class CIN_VOX_L4_CLASS
        loadbalance vip inservice
        loadbalance policy CIN_VOX_LB_SIP_POLICY
        loadbalance vip icmp-reply
    interface vlan 20
      description VIP_DMZ_VLAN
      ip address 172.22.12.4 255.255.255.192
      alias 172.22.12.3 255.255.255.192
      peer ip address 172.22.12.5 255.255.255.192
      access-group input PERMIT-ANY-LB
      service-policy input GLOBAL_DMZ_POLICY
    could you please help me on this...
    thanks
    Rakesh Patel

    I mean there should be one more statement-
    class-map type sip loadbalance match-any CIN_VOX_LB_SIP_POLICY 
    match sip header Call_ID header-value sip:
    and that will be called under-
    policy-map multi-match GLOBAL_DMZ_POLICY
       class CIN_VOX_SIP_L4_CLASS
        loadbalance vip inservice
        loadbalance policy CIN_VOX_LB_SIP_POLICY
        loadbalance vip icmp-reply
    is that missing in your config ?

  • RV042 v3 Cable/DSL Load Balancing Issue

    I am attempting to load balance 2 ISP connections:
    WAN 1- Comcast Cable 1500 MTU
    WAN 2- Verizon DSL 1492 MTU
    Both connections come up and load balancing is occuring.
    After WAN2 DSL is connected to the RV042, web browsing on LAN devices periodically and randomly times out. This oocurs when accessing varous sites including sights on the LAN such as device web configuration pages for the RV042 and the DSL modem. Repeated browser reload commands will bring the pages up. This happens on devices connected by wire and connected wirelessly to the RV042 via an access point. It looks like what an MTU issue would appear and I've dropped the Cable MTU configuration down to 1492 which doesn't resolve the issue. Summarily it appears that after DSL is connect to WAN2, the RV042 starts to choke on web page routing.
    Any thoughts would be appreciated.

    marksbond wrote:Do they share the same switch?
    No, the WAN ports are separate from the LAN (switch) ports.
    I do know that although the DSL modem is configured in the bridge mode,  it's web configuration page remains accessible at 192.168.1.1 if it is accessed directly from a PC while both are off of the network. This is also the address of the RV042 when accessed from the LAN side.
    That could be the problem.  Have you tried changing IP address on the modem?
    I have a similar situation, but I haven't enabled the modem in bridge mode.  The modem is used also as AP, so I gave it an address on a different network, disabled DHCP, and connected it from switch to switch on the RV.  Yes, 2 cables from the modem switch to the RV, one to the WAN2 port, another to the switch.  I also gave the modem a second IP, one in the LAN space, that way I can configure and have general access to its Web interface from the LAN.  There's probably a better solution.
    I did note in another discussion that Network Service Detection should not be enabled on WAN2 as it is a bridged PPPoE connection. I should note that the only devices connected to the LAN when this issue is occurring are a wireless access point with 2 or 3 clients and a PC wired to the RV042.
    There are differences between modems, some can be accessed when they are in bridge mode, some not.  But sending pings shouldn't work, the RV is configured to connect to a modem and use pppoe to the ISP, no modem IP defined anywhere (from the RV point of view) so there is no way to send a ping when the IP address is unknown.

  • CSS arrowpoint cookie load balancing issue

    Hi guys,
    I need some advice on a load balancing issue.
    We have connections hitting the CSS via a proxy environment. As a result i see only one source ip address. I want to use arrowpoint cookies for session stickeyness. However when i enable the rule the tcp session negotiation fails. The CSS sends a TCP/RST which terminates the session.
    Here's the rule config:
    content HTTP_rule
    add service ZSTS299102
    add service ZSTS281101
    vip address <filtered>
    add service LONS299102
    add service LONS281101
    balance weightedrr
    change service ZSTS299102 weight 5
    change service ZSTS281101 weight 5
    advanced-balance arrowpoint-cookie
    protocol tcp
    port 80
    url "/*"
    active
    Any help would be much appreciated.

    Remko,
    in L3/L4 the CSS sends the SYN directly to the server.
    So when the FIN comes in, we simply pass it to the server.
    With L5 the CSS spoofs the connection and we select the server only after receiving the GET.
    If there was some delay between the GET and the FIN, the CSS would have time to establish a connection with the server and the FIN could be simply forwarded.
    Unfortunately, in this case the FIN is right after the GET with no delay.
    Gilles.

  • What does per Wlan Band select and load balancing do ?

    Good morning.....We recently upgraded our controllers from 4.2.185 to 6.0.188 and have noticed many clients having connectivity issues. We have Aggressive load balancing turned off globally but have noticed that band select and load balancing are enabled on the
    Wlan. Are these settings mutually exclusive or do they do the same thing ?  Does the Wlan setting override the default ? We have noticed that there is
    output doing "debug dot11 load-balancing"
    Thanx.....Dave

    I believe we never had load balancing turned on when running 5.2 code. We jumped from 5.2 to 6.x temporarily and then to 7.0 within a 30 day time frame this summer. We're a large university and we had very few users on WiFi during that time.
    The Macintosh laptops are having nothing but trouble since school began, and I have gone over everything and found that band select is turned on as well as load balancing. Since band select didn't exist in 5.2 (I believe) I know it wasn't on. As for load balancing, I don't believe it was on, and I discovered it was turned on when recently reviewing our configs.
    The Macintosh laptops have been debugged and our Mac gurus tell us they're getting a message that equates to "the AP is busy, or the AP is full". This leads me to believe that load balancing got turned on during the upgrade and we didn't notice, which caused the Macintoshes to have issues.
    We don't have any VoWiFi clients so we don't have to support them, and we don't officially support smartphones, either.
    I turned off load balancing and will see how it goes....
    Thanks!

  • What SSL accelerator and load-balancer does anyone recommend?

    Hi:
    I wanted to find out:
    Does anyone recommend SSL accelerator cards/boards or SSL accelerator appliances?
    What SSL accelerator and load balancer does aynone recommend to help 9iAS?

    Ana_Alm wrote:
    Hi there!
    I just downloaded and installed OS X Lion, and I'm loving it so far.
    However, I've seen that Mountain Lion will have some new features when it comes to social apps (what I call the ones that combine twitter, facebook, rss readers and so on).
    So, does anyone knows any cools apps for that? I'm currently using Socialite, that combines all those three, but it has a few issues I don't particularly like. Plus, I'm using Adium for a msn client. I'm also thinking about downloading that beta version of "Messages" that will be realeased on Mountain Lion.
    So, what do you think? Give me your ideas
    Thanks a lot in advance!
    As Mountain Lion has not been released to the public yet, then most of us have no idea which companies have updated the development of their Apps for  ML. It is in Development phase so any App you try is at your own risk.
    Good Luck
    Pete

  • Reverse Proxy and Load Balancer for SMP 2.3 and Agentry Application

    Hi Expert,
    I'm putting in place a mobile solution composed by SMP 2.3 SPS 4 and SAP ECC 6.0. In the SMP 2.3 I created the agentry server and I have deployed my agentry application.
    My SMP/Agentry infrastructure is composed by two servers therefore I need a load balancer for balance the load into the several servers. Furthermore I need to use a reverse proxy in my DMZ zone.
    Based on what indicated in the SAP note "1904213 - SAP Mobile Platform Server Release Information" the Apache Reverse Proxy is not supported for Agentry clients. Agentry uses nginx for Reverse Proxy.
    I also found the following document How-to-Guide for Reverse Proxy and Load Balancing in SAP Mobile Platform 3.x that explain how to set-up a reverse proxy and load balancer with nginx and apache.
    Both the SAP note and the HOW to document are refereed to SMP 3.0 and not to SMP 2.3.
    I would know if the NGINX must be used also for SMP 2.3.
    Any suggestion/information is appreciated.
    Thanks in advance
    g.

    Please see Agentry Network Landscapes

  • Cache and Load Balancing with Oracle APEX Listener

    Hi,
    I intend to use only HTTP access.
    How to implement a Cache and Load Balancing with the Oracle APEX Listener?
    Is it possible to do with the the standalone running APEX Listener?
    Thanks by advance for any tips/documentation/references.
    Kind Regards.

    Hi,
    I think this question is best asked in the APEX Listener forum:
    ORDS, SODA & JSON in the Database
    Kind regards
    Sandro

  • Cache and Load Balancing for the Oracle APEX Listener

    Hi,
    I intend to use only HTTP access.
    My database is Oracle 11gR2, SE, 32 bit.
    How to implement a Cache and Load Balancing with the Oracle APEX Listener?
    Is it possible to do with the the standalone running APEX Listener?
    Thanks by advance for any tips/documentation/references.
    Kind Regards.

    Error. To be closed.

  • Cache and Load Balancing for Oracle APEX Listener

    Hi,
    I intend to use only HTTP access.
    The database I use is Oracle11gR2 SE 32bit.
    How to implement a Cache and Load Balancing with the Oracle APEX Listener?
    Is it possible to do with the the standalone running APEX Listener?
    Thanks by advance for any tips/documentation/references.
    Kind Regards.

    Error. To be closed.

  • PIX Redundant Internet Line and Load balancing

    I would like to find out if it's possible to configure my Cisco PIX 525 to use a secondary internet line from a different provider and perform load balancing. I'm using PIX Version 6.3(1)

    PIX version 6.3 does not support Redundancy and load balancing. but PIX/ ASA with version 7.0 supports Redundancy.

Maybe you are looking for

  • Adding new field to product allocation catalog?

    We are configuring product allocations in SCM 7.0 and have a requirement to add a new field to the standard field catalog for the allocations check.  We have followed the procedure outlined by SAP to add our new field to the structure /SAPAPO/KOMGOZ,

  • SBO - How to use two different Stock Account within the same Item Group

    Hi, I'm currently stuck within one of my implementation. I'm deploying the same solution worldwide which worked pretty well until now. All the items are connected to an item group, with a unique GL account, supposed to book at the same time the good

  • How can I get rid of "Jagged Edges" in FCP from .psd/.tif/.tga text files?

    Hi guys, I posted this once before but don't know if anyone looked at it or not. I am getting "Jagged Edges" in .psd/ .jpg/ .tif/ .tga text files when I edit them in FCP5.1.4. What is going wrong? It is getting very frustrating for me at this point.

  • After upgrade 12.1 2 invalid objects found

    Hi, after we upgrade from 12.0.6 to 12.1 qwe found 2 invalid objects show below ARP_ACCT_MAIN AP_ACCOUTING_EVENTS_PKG any idea pleas advice.

  • Error sending IDOC to PI

    Hi experts, I´ve configured an IDOC to IDOC scenario. The source system sends an IDOC to PI. The problem is this IDOC doesn´t arrive to PI (no message in SXI_MONITOR). I´ve checked in the source system the transaction SM58, and I have the following e