[Linux-HA] DRBD failover doesn't work

Michael Schwartzkopff misch at multinet.de
Tue Sep 8 13:50:55 MDT 2009


Am Dienstag, 8. September 2009 21:45:14 schrieb Christoph Lechner:
(...)
> What I wrote is maybe a little bit confusing.
> To clearify: The two machines aren't firewalls. They're web and mail
> servers mounted in a collocation rack. There's no DMZ or something linke
> that. Unfirewalled Internet on the Ethernet plugs. But every machine has
> an IPTables firewall to block unwanted access from the Internet. Of
> course the replication link has no strict firewall policy.
> But given the case I make a mistake when changing the firewall settings,
> the replication links and the Heartbeat communication might break.

Ok. That clarifies the situation.

> > If you want to use DRBD use two independend etherner channels and make a
> > bond interface.
>
> Again, messing the local firewall would break it.

What about two dedicated crossover cables between the machines? No need for a 
firewall in these interfaces.

-- 
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75

mail: misch at multinet.de
web: www.multinet.de

Sitz der Gesellschaft: 85630 Grasbrunn
Registergericht: Amtsgericht München HRB 114375
Geschäftsführer: Günter Jurgeneit, Hubert Martens

---

PGP Fingerprint: F919 3919 FF12 ED5A 2801 DEA6 AA77 57A4 EDD8 979B
Skype: misch42


More information about the Linux-HA mailing list