Solved

Exchange 2010 and NLB

Posted on 2011-03-17
10
1,036 Views
Last Modified: 2012-06-21
I'm currently having an issue where NLB failover is working inside the firewall but not outside. I currently have the FQDN EXCHNLB.domain.org pointing to the IP 10.x.x.x internally. If I attempt to connect to that hostname with https://EXCHNLB.domain.org/owa from an internal machine, I can get the OWA page without any issues for the two CAS servers I have that are part of the NLB cluster. I can stop either host in the cluster manager and when I reconnect it will seamlessly fail over to the other one. However, when I connect to https://external_public_IP/owa externally, which NATs to 10.x.x.x, failover does not work. The requests always go to one CAS server only and if I stop that server in the cluster manager OWA access no longer works. Why would failover work inside the firewall but not outside?

I'm using multicast NLB and both CAS boxes are virtusl machines on ESXI.
0
Comment
Question by:Julian123
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
  • 3
10 Comments
 
LVL 12

Expert Comment

by:Navdeep
ID: 35154384
Hi,

Does your cas servers have multiple nics?

What is filtering mode and affinity set to?
0
 
LVL 12

Author Comment

by:Julian123
ID: 35154666
Thanks for your response.

Yes, each server does have two NICs. Only one NIC from each is part of the NLB cluster. The secondary Nic on each one has an IP on the same subnet but no gateway set.

Under "filtering mode" multiple host is checked. The affinity is set to single.
0
 
LVL 12

Expert Comment

by:Navdeep
ID: 35154704
Can you change affinity to network and then test?
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 
LVL 49

Accepted Solution

by:
Akhater earned 500 total points
ID: 35154736
How did you setup your multicast ? did you do the configuration on the switch ?
0
 
LVL 12

Expert Comment

by:Navdeep
ID: 35154760
0
 
LVL 12

Author Comment

by:Julian123
ID: 35155037
I attempted to change the  affinity to network and tested but that did not help. I have not yet done any configuration on the switch. Are you referring to the static Mac address ARP mapping? I have not yet done that, though my understanding is that that will prevent switch flooding but will not make connectivity work where it did not before.

Thanks.
0
 
LVL 12

Expert Comment

by:Navdeep
ID: 35155064
limit Switch flooding comes into play when you use IGMP Multicast. Try creating static enteries as suggested in the doc and test
0
 
LVL 49

Expert Comment

by:Akhater
ID: 35155066
It is not a question of affinity it should be single

try to do it unicast and see if it works!
0
 
LVL 49

Expert Comment

by:Akhater
ID: 35155070
It is not a question of affinity it should be single

try to do it unicast and see if it works!

If it works then the issue is from multicast as I told you in a my previous post you probably didn't configure the switch for multicast
0
 
LVL 12

Author Comment

by:Julian123
ID: 35430105
test
0

Featured Post

Veeam gives away 10 full conference passes

Veeam is a VMworld 2017 US & Europe Platinum Sponsor. Enter the raffle to get the full conference pass. Pass includes the admission to all general and breakout sessions, VMware Hands-On Labs, Solutions Exchange, exclusive giveaways and the great VMworld Customer Appreciation Part

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Lotus Notes – formerly IBM Notes – is an email client application, while IBM Domino (earlier Lotus Domino) is an email server. The client possesses a set of features that are even more advanced as compared to that of Outlook. Likewise, IBM Domino is…
Check out this step-by-step guide for using the newly updated Experts Exchange mobile app—released on May 30.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
how to add IIS SMTP to handle application/Scanner relays into office 365.
Suggested Courses

635 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question