Configuration Synchronization Constraints
Whenever a configuration change is made on either EQ/OS 10 failover unit, the failover
subsystem synchronizes the configuration by transferring the configuration file to the other unit
over the VLAN subnet that has the
command
flag enabled.
If the command flag (Command Transfer in the GUI) is NOT set for any VLAN, the system
will use the first VLAN in the configuration file for Configuration transfer.
If you are currently using EQ/OS 10.3.1 , EQ/OS version 10.2.x or higher must be installed
on Equalizers used as failover peers for configuration synchronization to occur correctly. It is
highly recommended that you upgrade the OS version of all of the failover peers to 10.2.x or
higher.
Failover Configuration Transfer
The following applies when changing the default value of the
Configuration Transfer
peer option (
fo_
config_xfer
in the CLI):
1. By default, this option is
enabled
on all peer definitions and should usually be left enabled
unless there is a specific reason that the configuration of the two failover units must be dif-
ferent. [Note that it is no longer necessary, as it was in EQ/OS Version 8, to disable con-
figuration file transfer during upgrades. It is also not necessary when operating in failover
with a Version 8 Equalizer.]
2. If this option is
disabled
in the local peer definition, then configuration file transfer will not be
initiated or accepted by that system.
3. When
Configuration Transfer
is disabled between two peers and a VLAN change is made on
either or both systems, then failover between the units will be disabled because of a VLAN
mismatch. There will be errors evident in the GUI (on the
Peer Summary
screen) and in the
CLI (
eqcli >
show peer
peer_name
output). To re-enable failover, do the following:
a. Ensure that the VLAN/subnet configuration is the same on both units (with the
exception of names, VLAN IP addresses, and assigned ports).
b. Enable configuration file transfer between the two peers by enabling the
Con-
figuration Transfer
(
fo_config_xfer
in the CLI) option in the local peer definition on
both peers.
c. If the sequence number of the configuration file is the same on both units, then
you must also make a configuration change on one of the units so that the con-
figuration file with the highest number is transferred to the other unit. Once
both peers determine that they have the same VLAN configuration by comparing
the newly transferred configuration file, failover will be re-enabled.
d. Ensure that the settings of a remote peer’s flags are synchronized with the
remote peer when configuration transfer occurs.
Copyright © 2014 Coyote Point Systems, A Subsidiary of Fortinet, Inc.
All Rights Reserved.
541
Equalizer Administration Guide
Summary of Contents for Equalizer GX Series
Page 18: ......
Page 32: ...Overview 32 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 42: ......
Page 52: ......
Page 64: ......
Page 72: ......
Page 76: ......
Page 228: ......
Page 238: ......
Page 476: ......
Page 492: ......
Page 530: ......
Page 614: ......
Page 626: ......
Page 638: ......
Page 678: ......
Page 732: ...Using SNMP Traps 732 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 754: ......
Page 790: ......
Page 804: ......
Page 842: ......
Page 866: ......