A company has a couple of websites. They use a load balancer in front of these websites. After an upgrade of this load balancer, one of the websites (with virtual IP address 192.168.1.100) stopped working.
To investigate the issue, a packet capture of both the client side traffic as well as the server side traffic was made on the load balancer.
You can download the packet capture and the TLS session keys here:
As you can see in the packet capture, the load balancer is closing the connection with TCP/RST packets. What do you think is the root cause of these TCP/RST packets?