Cant Access Web interface
Cannot ping from other vlan
Firmware 7.0 and Safari on iOS
Load Balancer as Default Gateway and RDP
Currently all of our load balance services either run at L4 or in non-transparent mode but we now have a requirement to configure an SMTP service as L7 transparent due to the source IP address.
The first issue we have is that the service doesn't work when the default gateway on the server is set to the shared IP address of the HA pair. However it does work when using either of the partner IP addresses.
The second issue is that when the default gateway is set we're unable to RDP to the servers from a remote subnet.
The loadbalancers have a default gateway of 192.168.20.1 and all our services run on the 192.168.20.0/24 range.
Adaptive Script returns value 0 in real Servers Statistik
We have a Windows 2008R2 Terminal Server Farm with 12 Servers up and running.
I´ve tried to geht the next two Servers to work, but were not able to get the adaptive Script working properly.
The Servers are cloned and prepared with sysprep. After getting IIS up and running again, I get performance values from the script by opening the website. ( http://servername/load/lmperfagent.exe). These values are correct.
Meanwhile I´ve added the server to the Virtual Service on the Loadbalancer (LM-2200 - LoadMaster Version
6.0-28.20120206-1924).
The Problem is, that the loadbalancer only retuns 0 (zero) for the new server, while the website shows the correct value.
I have no Idea, whats wrong.
Thanks in advance.
Error when trying to access a VS from the Internet
I have a VS set up and it works perfectly when accessing it from the internal network. When I try to access it from the Internet I receive the following error in the loadmaster logs:
Jun 4 17:38:01 xjab-lb1 vsslproxy: Client 24.xx.x.xxx failed SSL negotiation!
Jun 4 17:38:23 xjab-lb1 last message repeated 3 times
Not able to monitor Ironport as a real server
I have created an SMTP virtual service for KEMP which directs traffic to an Ironmail (real) server, however the server cannot be monitored on port 25 using SMTP protocol. However, if I disable monitoring I am able to telnet through the virtual service to Ironmail. Also, if I add an Exchange 2007 server as a real server it is able to monitor that service. Both Ironmail and the Ex2007 server are on different subnets to the appliance. Below is the error I get, please let me know if you have any ideas:
Jun 5 11:47:18 NYXNLB1 l4d: Removing RS 10.38.1.7:25 from VS 10.96.1.18:25(SMTP out) - EOF or Incorrect data received
Jun 5 11:47:18 NYXNLB1 l4d: VS 10.96.1.18:25(SMTP out) Taken out of service due to failed Real Servers
KEMP and Cisco ASA5550 - Connections being reset
Migration Scenario: Ex2003 ->2010 HA via LM problem accessing 2010 HA from 2003 (Routinggroupconn.)
Exchange 2010 CAS gateway with Kemp virtual VLM 1000
SMTP Relay for Servers in same Subnet
I've just setup a HA pair of VLM-1000 servers and configured a VIP for load balancing SMTP traffic for application servers and scanners (scan2mail). I have 2 Exchange 2010 servers in Multi-role setup (CAS-HUB-MBX). The application servers, the Exchange servers and VLM servers are all on the same subnet.
I would like the VIP to support L7 Transparency so I can direct the server to a specific Receive Connector based on the Client IP. I've selected Real Servers are Local and L7 Transparency options as well as unchecking the Enable Non-Local Real Servers and unchecking Server NAT option.
How can I get the application servers to connect through the VLM to the Exchange server with their own client IP while not moving any servers to another subnet?
I've read something about an additional L7 Header as X-Forwarded-For. Will this work for SMTP traffic as well?
Exchange 2013 and 2 x Kemp VLM-100; can't seem to get this to run
I have 2 Exchange 2013 VM's running both roles, a DAG has been set-up
between these two and that works excellent.
I have followed this link mostly for Load Balancing:
http://www.msexchange.org/articles-tutorials/exchange-server-2013/high-availability-recovery/introducing-load-balancing-exchange-server-2013-part2.html
The Kemp's have been setup, high availability between the two works (HA
first and second mode) and they have each other as preferred failover.
For some reason i can't get load balancing to work with Layer 4 LB and multiple namespaces, my configuration is as following:
(not using the Kemp templates anymore, used to but that didn't work either so i
reset the Kemps and am using default services now)
DNS Records:
http://imgur.com/5zpeDS0
http://imgur.com/0JepfFH
In Exchange ECP - Virtual Directories:
(For all services the Internal name is: local path per server (i.e. https://exchange-srv1.amr-noah.local) + service extension as below (i.e. /ecp))
Outlook Anywhere - External name: outlook.amr-noah.local / Internal name: outlook.amr-noah.local
Autodiscover -
ecp - External name: https://ecp.amr-noah.local/ecp
EWS- External name: https://ews.amr-noah.local/ews/exchange.asmx
Microsoft-Server-ActiveSync - External name: https://eas.amr-noah.local/Microsoft-Server-ActiveSync
OAB - External name: https://oab.amr-noah.local/OAB
owa - External name: https://owa.amr-noah.local/owa
PowerShell - External name: https://powershell.amr-noah.local/powershell
On Kemp Load Balancer(s):
http://imgur.com/5jg22b4
http://imgur.com/vdPnwlO
Paths per service:
owa /owa/auth/logon.aspx
AutoDiscover /AutoDiscover/AutoDiscover.xml
EWS /EWS/Exchange.asmx
EAS /Microsoft-Server-ActiveSync
Outlook Anywhere /rpc/rpcproxy.dll
Offline Address Book /OAB
Can anyone tell me what i configured wrong here and why i can't connect to these DNS adresses?
Random connections drops
I'm having an issue with my users getting random connection drops. Sometimes after 3 mins and other times after 10 mins. Users are directed to the main URL, lets say 123abc.com and then depending on the server load they are directed to 1 of 3 servers. They are able to connect but randomly their connection drops and its users in different locations.
if I have the users hit the server IP directly, thus bypassing the loadbalancer they dont get any dropped connections. Please bear with me and this product, I just started this job and the Sys Admin before me is MIA..... so lucky me.
OWA Time out for Public and Private
LoadBalancer Backup wget
wget --no-check-certificate https://backupuser:backuppassword@192.168.30.244/progs/admin/backup?ba=C... -O LoadBalancer-backup_20090716
wget --no-check-certificate https://backupuser:backupkennwort@192.168.30.244/progs/do3rdcert/certbackup --post-data="pass=MYPASSPHRASE&ba=Create+Backup+File" -O LoadBalancer-backup_ssl-certs_20090716
http://www.loadbalancerblog.com/blog/2009/07/example-loadmaster-scripting-automated-backup
Since a couple weeks this jobs fails.
"
--2013-08-07 09:09:33-- (try: 2) https://***:*****@x.x.x.x/progs/admin/backup?ba=Create+Backup+File
Connecting to x.x.x.x:443... connected.
WARNING: cannot verify x.x.x.x's certificate, issued by `/C=US/ST=New York/L=New York/O=KEMP Technologies/OU=Support/emailAddress=support@kemptechnologies.com/CN=KEMP Technologies':
Unable to locally verify the issuer's authority.
HTTP request sent, awaiting response... 401 Authorization Required
Failed writing HTTP request: Bad file descriptor.
Retrying.
"
Version Vers:6.0-42
I think the Loadmaster accept the requests in this form not more .
Have anyone an idea how I solve it?
Greetings
Exchange 2010 Resets after 30 seconds
Hi,
We have a two-member Exchange 2010 CAS Array behind a LoadMaster (6.0-28a). We've been struggling with Outlook users constantly being prompted for credentials for some time. Other than that, everything works fine.
I put a sniffer on a client and I can see that without fail, the client sends about 5 RSTs in a row to the IP of the Virtual Server, which causes Outlook to fail back to the configured address of the public CAS server, which triggers the authentication prompt.
If I change the host file to send the client directly to each CAS member's IP address (bypassing the LM), this does not happen. In addition, disabling one real server at a time produces the logon prompt when each server operates alone.
So, it would seem that the LoadMaster is causing this RST. Any idea what I can check for?
Thanks,
-Thomas
Modify URL Server->Client
SharePoint 2013 Host Header
Hi @ all,
We want to Publish some of our SharePoint Sites with our two Loadmaster.
The SharePoint FE Server are configured to listen on 443 and host heaers.
So we create new SAN certificates for the LoadMaster und try to publish different sites like this:
VIP: 30.0.0.1:443 -> SSL Offload -> X-Forward-For -> 192.168.2.1:443 & 192.168.2.1
The first configured VIP works great. No Problems at all.
Configured the 2. or 3. like this:
VIP: 30.0.0.2:443 -> SSL Offload -> X-Forward-For -> 192.168.2.1:443 & 192.168.2.1
VIP: 30.0.0.3:443 -> SSL Offload -> X-Forward-For -> 192.168.2.1:443 & 192.168.2.1
We get the following message in the Logs and in the traces we cant find a connection to the RS.
Connection timed out (30.0.0.25:60606->30.0.0.2:443-><nodest>)[0] (waiting for initial client request)
Sign
delete me
usa housing market
הדרכה מקצועית בשביל מתענייני נדלן בארה"ב. בא לכם לקבל הדרכה איך מבצעים השקעות נדל"ן באמריקה על הצד הטוב ביותר? הציצו כאן
http://www.jonpa.com/blog/880/us-real-estate/