
When Equalizers are configured into a failover group, they continually probe (or heartbeat) each other so that a
backup peer can assume the primary role, should the active primary unit become unreachable.
Heartbeat probes are performed over a long-lived TCP connection. Whenever Equalizer starts heartbeating a peer,
it opens a heartbeat connection to the peer which remains open for as long as the two systems are operational and
have network connectivity. All heartbeats between the two peers will occur over this long-lived connection.
Heartbeat probes are configured using the following parameters. The parameters are listed first by their label in the
GUI, with the CLI parameter name in parentheses.
Once failover is configured, it is the system with the "greater" system ID that always
starts the heartbeating process. For example, of one "sysid" is "003048BC2C8A" and the
other is "003048D52AA2". The second "sysid" has a higher hex value and will start the
heartbeating process.
Global and Subnet Failover Parameters:
These parameters are defined at both the global and subnet levels; the subnet value will override the global value.
l
Heartbeat Interval (hb_interval)- The time in seconds (default:2) between sending and receiving
heartbeat probes between Equalizer and a peer. Each peer expects to receive a heartbeat probe from other
peers that have a failover IP address on a subnet within this interval.
l
Failed Probe Count (strike_count) - The number of successive failed heartbeats that must occur
before a peer is marked "down" (default:3). A heartbeat is considered to have failed whenever the Heartbeat
Interval has elapsed and no probe has been received from a peer during that interval.
Failover occurs if:
l The number of failed probes on any single subnet equals or exceeds the Failed Probe Count for that subnet.
OR
l The number of subnets with a Failed Probe Count greater than 0 equals or exceeds the global Failed Probe
Count.
Global Failover Parameters:
These parameters are defined at the global level only and cannot be overridden.
l
Retry Interval (retry_interval) - Time in seconds (default:5) between checks for changes in
Equalizer’s configuration, for the purpose of determining whether a configuration transfer to the remote peer
is required.
The Retry Interval is also used when any failover operation other than heartbeating fails. For
example, if the system is rebooted and a VLAN health check fails, we try again at this
interval.
l
Connect Timeout (conn_timeout) - Time in seconds (default:1) to wait for a TCP connection to be
established between peers.
l
Receive Timeout (recv_timeout) - Time in seconds (default:1) after a TCP connection is established,
of how long a peer waits for the other peer’s response.
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
All Rights Reserved.
437
Equalizer Administration Guide
Comentarios a estos manuales