
a. fo_https- when enabled the Equalizer will listen for https connections on the Failover IP
address on the subnet.
b. fo_ssh - when enabled ssh login will be permitted on the Failover IP address on the subnet.
c. fo_snmp - when enabled snmp will accept connections on the Failover IP address on the
subnet.
d. fo_envoy - when enabled this will allow Envoy to monitor this subnet for failover
e. fo_envoy_agent - when enabled this will allow an Envoy agent to monitor this subnet for
failover
5. Enter:
eqcli > vlan vlname subnet sname stike_count integer
Where vlname is the name of the VLAN, sname is the name of the subnet and integer is
thee strike count number, which is the strike count threshold for a subnet. When the
number of strikes detected on this subnet exceeds this value, the subnet has failed. A value
of 0 indicates this subnet will never be considered “failed”.
6. Enter:
eqcli > vlan vlname subnet sname probe_interval seconds
Where vlname is the name of the VLAN, sname is the name of the subnet and seconds is
the Failed Probe Count or the number of failed peer probe attempts that must occur before
marking a peer "down" (default: 3). The failed probes must all occur on the same VLAN
subnet for the server to be marked "down".
7. Repeat the same procedure on the preferred backup.
Configuring VLAN (Subnet) Failover Settings (GUI)
1. Configure both Equalizers running EQ/OS 10:
a. Perform initial system configuration as outlined in "Network Configuration" on page 77.
b. Create all required VLANs, clusters, servers, etc., required for your configuration.
c. Ensure that the configuration is working properly. In particular, make sure that at least one
server is active (that is, marked "up" in the GUI). Failover will not properly initialize if
Equalizer cannot successfully probe at least one server.
Copyright © 2013 Coyote Point Systems. A subsidiary of Fortinet, Inc.
All Rights Reserved.
441
Equalizer Administration Guide
Comentarios a estos manuales