Forum Discussion

coda6_52611's avatar
coda6_52611
Icon for Nimbostratus rankNimbostratus
Dec 19, 2011

AD Load Balancing

So I have multiple AD servers on multiple sub-networks across my data centers.

 

 

I don't have them all in the same networks since we don't bridge layer 2 networks across layer 3 boundaries.

 

 

Soooo..... How do I load balance my AD servers behind a LTM? Can NPAth routing accept multiple networks to point to?

 

 

I don't want the BigIP handling all the LDAP requests, I just want it to load balance the traffic to the servers and do health monitors.

 

 

Thanks,

 

 

Ken

 

  • Helen_Johnson_1's avatar
    Helen_Johnson_1
    Historic F5 Account
    Hi Ken,

     

     

    Thanks for your message.

     

     

    Can you elaborate a bit on which services you'd like your LTM to handle and monitor? Some services will be able to be handled by the LTM, whereas some will not. I'd like to know so my team and I can help you make the best determination.

     

     

    Thanks and we look forward to hearing from you soon.

     

     

    Cheers,

     

    Helen
  • All I'm looking to monitor LDAP services.

     

     

    Our current AD/LDAP solution works fine for MS products but once you go to an Open Systems solution they sometimes can't or won't check for more than one LDAP server and if that server happens to be unavailable, for patching or upgrades or whatever, applications fail.

     

     

  • Hey Coda6,

     

     

    Not sure if I am hitting the mark with this response but here goes. You can definitely LB the LDAP servers and monitor them specifically. If I am understanding, the Open Systems may try to use a LDAP server that is unavailable. You can use LTM to load balance the LDAP pool and assign an LDAP specific health monitor to the pool and/or nodes to ensure that traffice is directed to only available servers.

     

     

    You can create a custom LDAP monitor at: 'Local Traffic' --> 'Monitors' --> 'Create' & select 'LDAP' for Type.

     

     

    Here's a link to AskF5.com that discusses LDAP monitoring best practices:

     

    http://support.f5.com/kb/en-us/solutions/public/9000/300/sol9311.html?sr=18473158

     

     

    Hope this helps...

     

     

    Greg