Академический Документы
Профессиональный Документы
Культура Документы
WCP
WALLIX HIGH AVAILABILITY
WALLIX HA SOLUTIONS
© Copyright WALLIX 3
WALLIX BASTION HA
© Copyright WALLIX 5
WALLIX BASTION HA
▪ Configuration steps:
1. Be sure that the 2 bastions have the same version and hotfix
3. Be sure that the clock of 2 Bastions are synchronized (it is recommended to configure
NTP server)
7. Connect to Master Bastion using SSH and get the root privilege
© Copyright WALLIX 6
WALLIX BASTION HA
© Copyright WALLIX 7
WALLIX BASTION HA
• Starting the
configuration of the
WABHA
• Configuring the IP
address of the HA
interface of the
remote peer
• Configuring the
Virtual IP Address
and Mask
• Configuring mail
address to receive
the HA notifications
• Configuring
wabadmin and
wabsuper
passwords of the
remote peer
© Copyright WALLIX 8
WALLIX BASTION HA
The Master
The Slave
© Copyright WALLIX 9
WALLIX BASTION HA
▪ What does happen when there is a switch-over
© Copyright WALLIX 10
WALLIX BASTION HA
▪ Maintenance:
• Stop wabha service
root@wb-training-master:~# systemctl stop wabha
© Copyright WALLIX 11
WALLIX BASTION HA
▪ Maintenance: Version upgrade or hotfix installation
1. Install the new version or hotfix on the Master → This will stop WABHA service on
the slave (Wait until the installation is complete on the Master)
2. Install the new version or hotfix on the Slave → This will restart WABHA service on
the slave
© Copyright WALLIX 12
WALLIX BASTION HA
▪ Split-Brain: How it happens ?
© Copyright WALLIX 13
WALLIX HA
REPLICATION
On different sites
▪ Actif/Actif mode → No Virtual IP address and no
automatic switch-over
© Copyright WALLIX 15
WALLIX HA REPLICATION
cluster
© Copyright WALLIX 16
WALLIX HA REPLICATION
▪ Master/Slave mode: Master
© Copyright WALLIX 17
WALLIX HA REPLICATION
▪ Master/Master mode:
Master
© Copyright WALLIX 18
WALLIX HA REPLICATION
▪ Limitations:
• By default, the audit data are not replicated. An optional solution can
be configured to do it automatically every day.
© Copyright WALLIX 19