Set drsite auto sync
Synchronized Data
Following data is synched between the cluster nodes
Configuration | Details | Synch Details | Synch Duration |
---|---|---|---|
Main HySecure configuration | All user, application, access control related data and other data stored in database | From Active to Standby node as database synch | within 5 minutes (/home/fes/ha_interval.conf) |
Cluster configuration | Active node, Standby node and Gateway configuration | Only from Active to other nodes in cluster | On first time cluster join and every modification Within 2 minutes /home/fes/ha_interval.conf |
Client Settings | HySecure client related configuration | From modification node to all node | On every modification |
HyLite Settings | HyLite setting | Active to standby | 5 mins |
SSL Certificates | Upload external SSL certificate | Active to standby | |
HySecure License | HySecure license | Active to standby and other node. | 5 mins |
Gateway state | HySecure gateway state. | Active to standby and other node. | 5 mins |
Data non-synchronized
Following data is not synched between the cluster and must be done on each node manually.
Gateway binary upgrades | HySecure gateway binary | Not Synched. Upgrade each gateway manually | |
---|---|---|---|
/etc/hosts, | Host file for name resolution | Not Synched. Manually create hosts file entry on each gateway. | |
/etc/resolve.conf | DNS Server settings | Not Synched. Manually create setting on each gateway | |
NTP Settings | NTP configuration for date and time on each gateway | Not Synched. Manually start NTP on each gateway. | |
HyLite License | HyLite license | Not able to sync, HySecure admin need to upload HyLite license on each node manually | |
SSL Settings | SSL setting on HySecure gateway | Not able to sync, HySecure admin need to this setting on each node manually | |
Global Settings | HySecure gateway configuration | Following option not able to sycn Connection KeepAlive, SSL Version 3.0 Support and Current SSL timeout | 5 mins |
Synchronized Files
Following files are synched across the cluster
File Name/ Directories | Synch or not | Purpose of file | Interval of synch (customizable) | Any specific direction |
---|---|---|---|---|
/etc/sysconfig/ha/lvs.cf | Synch | Cluster configuration | 5 minutes | Sync between active and standby, not on real VPN node. |
/home/fes/public/portal/act/apptab.html /home/fes/public/portal/act/loginPage.htm /home/fes/public/portal/act/logoutclient.html | Synch | Portal web page | 5 minutes | Sync changes like brandname |
/etc/httpd/conf/httpd.conf | Synch | Web server configuration file | 5 minutes | On all nodes |
/etc/logrotate.d/ves | Synch | Logrotate configuration file, Log archive setting, not on real VPN node | 5 minutes | On all nodes |
/home/fes/public/tseclientinfo.js /home/fes/public/verinfo.js | Synch | Client global login profile setting | 5 minutes | On all nodes |
/home/fes/.byPassSiteList | Synch | VPN by pass URL lists | 5 minutes | On all nodes |
/home/fes/localmail.txt /home/fes/csrmail.txt /home/fes/resetpassmail.txt | Synch | Emails template | 5 minutes | On all nodes |
/home/fes/ntp_command | Synch | NTP server setting | 5 minutes | On all nodes |
/home/fes/smsconf.settings | Synch | HyID OTP settings | 5 minutes | On all nodes |
/home/fes/features.status | Synch | Internal | 5 minutes | On all nodes |
/home/fes/mysqldump/ | Synch | [Database | Database replica on each node,Missing on real VPN nodes | 10 minutes |
/home/fes/fescommon/ | Synch | VPN configuration and SSL certificates. | 5 minutes | On all nodes |
/var/lib/mysql/mysql/ | Synch | Database configuration, Missing on real VPN node. | 10 minutes | On Active and Standby |
/etc/hosts | [Not | Not Synch | Name resolution | - |
Log files | Pushed | All the log files | instantly | From Active to Standby |