Forum Discussion
Luca_55898
May 16, 2012Nimbostratus
LTM HA - network or hardware failover?
Just wondering if people use network or hardware failover or both?
I'm setting up two LTMs in an active/standby config, and am a little confused
It seems hardware failover will be preferred over network if both are configured. But what if if the switch port which connects to the active unit goes down? will the device failover to the backup unit using hardware failover?
I have the following requirements:
Failover if network connectivity is lost to active device
failover if active device looses power
Management of devices using a floating IP
All VLANs to be synchronized across both devices.
I'm thinking network failover is best for this... would appreciate some feedback
- nitassEmployeeBut what if if the switch port which connects to the active unit goes down? will the device failover to the backup unit using hardware failover?i assume you mean all network connectivities are down. if so, bigip won't failover (since hardware failover is there) unless you also configure vlan failsafe or ha-group.
- Luca_55898NimbostratusYes, if network connectivity to one unit is down i will need it to failover (obviously) so i guess VLAN fail safe would be what I want. Does that work OK with hardware failover? I mean can vLAN fail safe and hardware failover be used together?
Also, I have noticed that when I create a new VLAN on one unit and then sync the config, the new vlan does not show up on the standby unit.... Is this normal?
- nitassEmployeeDoes that work OK with hardware failover? I mean can vLAN fail safe and hardware failover be used together?why not? ;-)
- Luca_55898NimbostratusPosted By nitass on 05/16/2012 06:14 AM
I have an API that can configure vlans, VIPs, pools, nodes etc etc at any time via a web portal that our customers can use...
If they don't get configured on the backup device and a failover occurs traffic wont flow. Is it possible to get this synchronised somehow at all?
- smp_86112CirrostratusI use both VLAN Failsave and hardware failover. It is normal to assign both units a shared IP address - the Active unit is responsible for responding with the shared address. Even after a failover, there is always an Active unit so the shared address should be responding (unless something really unusual happened). You designate an IP address as "shared" by selecting the "Floating IP" checkbox (in 10.2.0, at least). Yes, unfortunately you have to create this shared address on both units. But once it's set up, both units can respond to it (though as I mentioned, only the Active unit will).
- @luca That's interesting, is it for one client? Or are you offering shared services to multiple clients?
- Luca_55898NimbostratusPosted By iRuleYou on 05/17/2012 07:05 AM
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects