?
Solved

DAG failover issues (again)

Posted on 2013-10-24
5
Medium Priority
?
394 Views
Last Modified: 2013-11-09
Hi

Back to this one again, still unresolved after more testing. The issue is, if the databases failover to the DR exchange server for any reason, while the HQ server is still up, Outlook stops working.

To recap:

2 physical sites, each with a DC and configured as separate AD sites on different subnets.

Each site has a single Exchange 2010 server with ALL roles, and configured in a DAG.

HQ contains all users and the DR site is purely passive until such time as a failure.

Topology below:

HQ IP Range: 192.168.61.0/24
DR IP Range: 192.168.32.0/24

exch-hq - 192.168.61.40
exch-dr - 192.168.32.40

DAG Name: company-dag
DAG IP's: 192.168.61.45 & 192.168.32.45
Primary Witness: HQ Site
Alternate Witness: DR Site

Get-MailboxDatabase -Server exch-hq | fl name, rpc*

Name: DB01
RpcClientAccessServer: exch-hq.company.com

Name: DB02
RpcClientAccessServer: exch-hq.company.com

I think there a few misconfigurations in place here, from things I have read about.

Having dedicated CAS Array servers with NLB etc is NOT possible, so we are going down the DNS route which I know can work.

1. RpcClientAccessServer setting
2. DAC Mode
3. DatabaseCopyAutoActivationPolicy - does this need to be set?
4. How do you test permissions for Witness servers to be 100% they are working?
5. AllowCrossSiteRpcClientAccess - does this need to be set?

I'm thinking I should create a cas.company.com DNS entry with a low TTL, point it at exch-hq (192.168.61.40).

Then change the RpcClientAccessServer property to cas.company.com, manually changing the IP in DNS when failover occurs

But the other commands (and any I missed) - do these needs to be set?

Have I missed anything?
0
Comment
Question by:bikerhong
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
5 Comments
 
LVL 27

Expert Comment

by:☠MAS☠
ID: 39596739
Please make sure your witness server is configured properly.
Try recreating the witness folder in DAG properties
Check this
0
 
LVL 9

Expert Comment

by:Mahesh Sharma
ID: 39596792
0
 

Author Comment

by:bikerhong
ID: 39597164
Ok, I think I have this working to a satisfactory point.

I created a cas array object (which exists only in DNS)
I created a cas dns object with a TTL of 5 mins pointing to exch-hq
I assigned this cas object to a test database

Testing:

Test DB mounted on Exch-HQ with client at HQ, with Outlook profile reconfigured to look at cas dns record.

All OK.

Failed test db over to DR, Outlook comes up and says it needs to be restarted.

Restart Outlook, all OK.

Failed back, same thing happens.

This is "acceptable", I dont think we can get failover working seamlessly without some actual CAS servers?

If there is anything else to add to this please do so, we are still testing, if no replies in a few days I will select the most appropriate best answser.
0
 

Accepted Solution

by:
bikerhong earned 0 total points
ID: 39597379
Update - setting AllowCrossSiteRpcClientAccess property allows outlook to failover without prompting for restart!
0
 

Author Closing Comment

by:bikerhong
ID: 39635420
Best answer
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will help to fix the below error for MS Exchange server 2010 I. Out Of office not working II. Certificate error "name on the security certificate is invalid or does not match the name of the site" III. Make Internal URLs and External…
This article describes how to import Lotus Notes Contacts into Outlook 2016, 2013, 2010 and 2007 etc. with a few manual steps. You can easily export and migrate Lotus Notes contacts into Microsoft Outlook without having to use any third party tools.
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…
Suggested Courses
Course of the Month15 days, 2 hours left to enroll

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question