We currently use the LVS source hash (sh) scheduler for HTTPS traffic, as a way to keep client connected to specific HTTPS terminators and avoid renegotiating their TLS session parameters. However, this means that currently a a penalty is incured for all users whenever a server is depooled (all IPs are reshuffled).
To address this, we need to switch our depooling method from removing the server from the pool entirely, to keeping it in the pool but setting it at weight 0, which is explicitly supported by LVS. Pybal needs to explicitly support this.