Solved

F5 Load Balancer - Active/Standy switching role controlling failover

Posted on 2014-04-02
8
684 Views
Last Modified: 2015-01-08
Running 2 F5 load balancers in a Active/Standby role, running version 10.2.1.
Although in a normal failover scenario it works fine but, recently within the data centre they are hosted, there was a power issue and the Active lost power. The standby took control as expected. They use the serial connection to advertise each other. So, the power on the original Active was restored then  lost a few times ,with the switch it was connected also not available. The result being, all connections were being sent to the Active which had no switch to send connections to or receive so causing timeout for traffic.

So, how do I in this scenario stop the "active" device on having power restored stop becoming the ACTIVE load balancer . Actual fail back needing a manual fail back not automated as in a Cisco ASA active/failover scenario.
0
Comment
Question by:ccfcfc
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 4
8 Comments
 
LVL 57

Expert Comment

by:giltjr
ID: 39973974
You need to change the preferred HA state to none on both F5's.

However you should setup a fail over check that would detect the F5 not having a valid path.  Depending on your setup defining a fail-safe gateway pool should work.
0
 

Author Comment

by:ccfcfc
ID: 39974513
Sounds a good plan but, as soon as you put one of the devices Redundancy State Preference to NONE both devices start to become "active" . So not sure if you have the steps to stop this actvity.  So LB-01 is in Active/Standby and currently set to Active and LB-01 set to Standby. What ever way I change state Preference to "NONE" they start to fight for Active role.
In principle it seems it should work as, if the Active ever fails and control goes to the Standby you dont want the original Active to take control until you do a manual fail back. It seems I cant get them to operate in an active/standby mode when I change the Redundancy State Preference on either box.
If that makes sense.
0
 
LVL 57

Expert Comment

by:giltjr
ID: 39974720
--> Sounds a good plan but, as soon as you put one of the devices Redundancy State Preference to NONE both devices start to become "active"

Then there is a configuration issue someplace.

Do you have Fail Safe VLAN's or Gateways configured?

Have you loaded your config in F5's iHeath?
0
The Orion Papers

Are you interested in becoming an AWS Certified Solutions Architect?

Discover a new interactive way of training for the exam.

 

Author Comment

by:ccfcfc
ID: 40003665
No we do not as we use the serial connector for detecting physicsl failure. Based on geography and the network setup this was seen as the best method opposed to setting up a VLSN to detect for any errors or issues.
0
 
LVL 57

Expert Comment

by:giltjr
ID: 40003700
The serial connection will only help detect a full failure of a F5.  This will not help if you lose a network path between the F5 and another network device.

Do you have two diverse physical (L2) connections from each F5 to different network devices for each logical (L3) network?
0
 

Author Comment

by:ccfcfc
ID: 40061512
No, I was told by F5 direct that whereas you can put diverse conenctions it, this is not a good idea and or possible with a physical 1600. Perhaps this has changed with v11 of the software. I have a single 1 to 1 L2 link between F5 and switch for traffic by L3.
0
 
LVL 57

Accepted Solution

by:
giltjr earned 500 total points
ID: 40061808
You need to use either Fail Safe VLAN's or Gateways or both depending on your setup.
0
 

Author Comment

by:ccfcfc
ID: 40074362
ok I shall look into it
0

Featured Post

Simple, centralized multimedia control

Watch and learn to see how ATEN provided an easy and effective way for three jointly-owned pubs to control the 60 televisions located across their three venues utilizing the ATEN Control System, Modular Matrix Switch and HDBaseT extenders.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

There is no doubt that cloud is gaining importance. Many of you must have read about this technology and its growing importance. More and more organisations are embracing this technology not forgetting start-ups. The process begins by dipping …
Many CHPs use the buzzword ‘Cloud Hosting’ to sell the idea of reliability. Most consumers have the opinion that cloud hosting is easily scalable and can handle just about anything. Further, most CHPs are not transparent and hide the underlying arch…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Need to grow your business through quality cloud solutions? With everything required to build a cloud platform and solution, you may feel like the distance between you and the cloud is quite long. Help is here. Spend some time learning about the Con…

689 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question