Technology sharing

lvs DR modus et keepalive est split cerebrum

2024-07-12

한어Русский языкEnglishFrançaisIndonesianSanskrit日本語DeutschPortuguêsΕλληνικάespañolItalianoSuomalainenLatina

Dr modus:

Tres modi lvs nat translation

Dr directum iter modus

cuniculum modus

Schedularum maximi momenti est in botro LVS totius. In NAT modo, petitiones accipiendi responsabilis est, negotiatio pro onere algorithmum aequante, et responsa ad clientem mittit.

DR modus: Schedularius adhuc responsabilis est petitiones accipiendi, ac etiam negotiatio ad RS secundum algorithmum pondera librans, et responsio clienti a RS directe respondet.

Direct Routing Direct Routing est Stratum 2 procuret modus. Accumsan 2 in priorem data tabulae. Transmissio ex fonte mac inscriptionis et destinationis mac electronicae.

Fons IP et destinatio IP fasciculi notitiarum immutabile non erunt, et fasciculus notitiarum in electronica mac electronica transmittantur.

In DR modo, LVS etiam virtualem IP inscriptionem conservat, omnesque petitiones ad hunc VIP mittuntur. Cum per alterum tabulatum transmittantur, cum huius rogatio schedulam attingit, RS seligitur secundum onus algorithmum aequante, et. VIP modificatur. Inscriptio macilentiis RS mac electronica fit. Postquam RS percunctatur, protinus responsionem mittere potest clienti e fonte mac inscriptionis in nuntio, sine necessitate schedulae.

1. Schedularius cum VIP configuratur, et VIP inscriptionem etiam in RS configuratur.

Certamina inscriptionis VIP. Schedularius et RS simul in segmento retis sunt.

Quomodo responsionem loopback lo impediret ut solum IP oratio physica machinae huius respondeat.

Modificare parametri nucleos:

arp_igrone = 1

Solummodo physica IP oratio systematis petitioni respondebit. lo ARP petitionibus respondere non vult.

2. Cum nuntius redditur, inscriptio VIP adhuc ibi est. Quomodo client responsio accipere potest?

arp_anounce=2

Systema non utitur fonte inscriptionis IP fasciculi ad petitionem ARP respondendi, sed directe IP oratio instrumenti physici emittit.

Nodi servo configurationem:

Exsequendam DR modus:

nginx1 RS1 192.168.233.100

nginx2 RS2 192.168.233.110

vip 192.168.233.200

test1 scheduler 192.168.233.10

test2 clientis 192.168.233.20

route add -host 192.168.233.100 dev lo:0

Constitue inscriptio IP ad 192.168.233.100

Averte firewall et defensionem mechanismum scheduler (test1), clientis (test2), rs1 (nginx1), rs2 (nginx2)

  1. [root@test1 ~]# systemctl stop firewalld
  2. [root@test1 ~]# setenforce 0

Schedularius nucleum onerat ac instrumentum ipvsadm inaugurat.

  1. [root@test1 ~]# modprobe ip_vs
  2. [root@test1 ~]# yum -y install ipvsadm*

Create vip oratio

  1. [root@test1 ~]# cd /etc/sysconfig/network-scripts/
  2. [root@test1 network-scripts]# vim ifcfg-ens33:0
  3. DEVICE=ens33:0
  4. ONBOOT=YES
  5. IPADDR=192.168.233.200
  6. NETMASK=255.255.255.255
  7. [root@test1 network-scripts]# ifup ens33:0

Modificare responsionis parametri scheduler

  1. [root@test1 network-scripts]# vim /etc/sysctl.conf
  2. net.ipv4.ip_forward=0
  3. #关闭数据包转发功能
  4. net.ipv4.conf.all.send_redirects=0
  5. #禁止系统发送icmp重定向的消息
  6. net.ipv4.conf.default.send_redirects=0
  7. #禁止默认网络接口发送ICMP重定向的消息
  8. net.ipv4.conf.ens33.send_redirects=0
  9. #禁止ens33设备,禁止发送ICMP重定向消息

VIP specificare et pondera algorithms onus

  1. [root@test1 opt]# ipvsadm -C
  2. [root@test1 opt]# ipvsadm -A -t 192.168.233.200:80 -s rr
  3. #指定vip和负载均衡的算法

Adde verum servo determinato modo ac tergum

  1. [root@test1 opt]# ipvsadm -a -t 192.168.233.200:80 -r 192.168.233.100:80 -g
  2. [root@test1 opt]# ipvsadm -a -t 192.168.233.200:80 -r 192.168.233.110:80 -g
  3. [root@test1 opt]# ipvsadm-save /etc/sysconfig/ipvsadm
  4. [root@test1 opt]# systemctl restart ipvsadm

Configurare verum servers II (nginx1 nginx2)   

Paginae aditus duorum ad nginx1 et nginx2 . pone

  1. [root@nginx1 ~]# vim /usr/local/nginx/html/index.html
  2. nginx1
  3. [root@nginx1 ~]# systemctl restart nginx
  4. [root@nginx2 ~]# vim /usr/local/nginx/html/index.html
  5. nginx2
  6. [root@nginx2 ~]# systemctl restart nginx

Visita et proba te ipsumCreare loopback interface pro loopback inscriptiones 2 servers

  1. [root@nginx1 ~]# cd /etc/sysconfig/network-scripts/
  2. [root@nginx1 network-scripts]# cp ifcfg-lo ifcfg-lo:0
  3. [root@nginx1 network-scripts]# vim ifcfg-lo:0
  4. DEVICE=lo:0
  5. IPADDR=192.168.233.200
  6. NETMASK=255.255.255.255
  7. ONBOOT=yes
  8. [root@nginx1 network-scripts]# ifup lo:0

Locum IP ad 192.168.233.100 constitue et eam ad interfaces loopback ut VIP lvs adde

[root@nginx1 network-scripts]# route add -host 192.168.233.200 dev lo:0

Tuning nucleum responsionis verae servers

  1. [root@nginx1 ~]# vim /etc/sysctl.conf
  2. net.ipv4.conf.lo.arp_ignore = 1
  3. #设置回环接口忽略来自任何接口的ARP请求
  4. net.ipv4.conf.lo.arp_announce = 2
  5. #设置回环地址仅仅公告本地的ip地址,但是不响应ARP请求
  6. net.ipv4.conf.all.arp_ignore = 1
  7. #设置所有接口忽略来自任何接口的ARP请求
  8. net.ipv4.conf.all.arp_announce = 2
  9. #设置所有接口仅仅公告本地的ip地址,但是不响应ARP请求

Test Proventus

Modi tres operandi lvs:

NAT DR TUN

Commoda: Inscriptio translationis effectus optima est in LURIDUS, et potest intellegere transmissionem notitiarum per longissimas intervalla facis.

Configurans simplex dedicated channel

Incommoda: euismod bottleneck cross-network segments non sustinet et requirit foramen VPN (pecuniam sumptus)

Requisita pro RS: Infinitus debet prohibere ARP responsa in non-physica interfaces et cuniculum modus sustinere debet

Quantitas RS 10-20 unitates 100 unitates 100 unitates

Colloquium quaestiones:

Breviter describere tres modos lvs et earum differentias

Colloquium quaestiones:

Quomodo cerebrum scissurae solvendi custodiae?

Excelsa dispositio architecturae in lvs botri tantum est ad altam promptitudinem schedulae.

Fundatur in vrrp, principale et tergum schedulae implentur.

Praesto HA architectura

Pelagus scheduler et tergum scheduler (multa)

Cum principale schedulae normaliter laborat, standum est omnino in statu redundanti (ut definiatur). Operationem botri non participat. Solum cum principalis cedularum deficit, standum est opera schedulae principalis. et sto perseveret in statu redundans (respectu prioritatis) .

Instrumenta conservativa LVS promptitudinis solutionis in vrrp protocollo fundata.

1. Multicast oratio:

224.0.0.18 nuntios communicat fundata inscriptione multicast. Primigeniae et secundae cogitationes nuntios miserunt ut altera pars viveret.

2. Determinare positiones primariae et secundariae secundum prioritatem.

3. Failover, si apparatus primarius dependet, apparatus tergum in opere perseverabit.

4. Commutatio inter primariam et secundariam est commutatio inscriptionis VIP.

Servativum specie LVS apparet, sed non proprium LVS.