Skip to content

SME Troubleshooting War Rooms

War Room Incident Drills 15 Production SEV-1 Scenarios

Sebagai Senior / SME Cloud Network Engineer, kemampuan melakukan root-cause analysis (RCA) di bawah tekanan insiden produksi (SEV-1 outage) adalah pembeda utama. Latihan interaktif ini menguji ketajaman analisa Anda terhadap telemetry log, asymmetric routing, PMTUD black holes, BFD timer mismatches, TLS decryption failure, dan failover traps.

SME Troubleshooting War Rooms: 15 Real-World Incident Drills
SME War RoomSEV-1 CRITICAL

Uji intuisi investigasi root-cause SEV-1 network outage produksi menggunakan log telemetri, inspeksi CLI interaktif, dan validasi mitigasi arsitektur.

Progress & Score:0 / 15 Solved
Case 1 of 15: The Asymmetric Routing Trap in Multi-AZ GWLB Inspection Hub

Incident Scenario

Workload di Spoke VPC AZ-A mengirim traffic ke Spoke VPC AZ-B melewati Central Inspection VPC dengan Gateway Load Balancer dan Palo Alto firewall cluster. Koneksi TCP SYN berhasil dikirim, tetapi client selalu mengalami TCP RST atau connection timeout acak (50% kegagalan).

Incident Telemetry & Packet Captures
// VPC Flow Logs (Inspection ENI AZ-A) 2 123456789012 eni-0a1b2c3d4e 10.10.1.50 10.20.2.80 49152 443 6 1 60 1620000000 1620000060 ACCEPT OK (SYN) // Firewall Logs (Palo Alto Appliance AZ-B) 2026/08/22 14:10:02 [DROP] TCP flow 10.20.2.80:443 -> 10.10.1.50:49152: Reason: Non-SYN packet received for non-existing session (Stateful TCP Inspection Failure)
Interactive Diagnostic CLI Probe (Click or type custom command) Simulated Device Shell
$

Senior SME Diagnosis Question:

Apa akar masalah arsitektural (root-cause) dari kegagalan stateful inspection ini dan apa solusinya?

AAWS Transit Gateway Appliance Mode belum diaktifkan pada attachment Inspection VPC. Solusi: Aktifkan TGW Appliance Mode agar flow forward & return selalu diarahkan ke ENI pada Availability Zone yang sama.
BSecurity Group pada Gateway Load Balancer memblokir traffic TCP port 443. Solusi: Tambahkan ingress rule 0.0.0.0/0 pada SG GWLB.
CMTU pada GENEVE tunnel melebihi batas 1500 bytes. Solusi: Turunkan MTU pada client menjadi 1400.

Metodologi Standar SME untuk Network Incident Triage

Ketika menangani degradasi performa atau packet loss di AWS, ikuti alur investigasi sistematis:

Advanced Cloud Network Engineering Mastery Portal • RFC Deep-Dive to AWS Super Enterprise Scale