CumuLogic Load Balancer Overview Guide. March 2013. CumuLogic Load Balancer Overview Guide 1



Similar documents
Guide to the LBaaS plugin ver for Fuel

Configuring Security Features of Session Recording

Pexip Infinity Reverse Proxy Deployment Guide

How To Create A Virtual Private Cloud In A Lab On Ec2 (Vpn)

App Orchestration 2.5

KeyControl Installation on Amazon Web Services

Load Balancing Advanced Operation Manual

Deployment Guide Microsoft IIS 7.0

Deploying F5 with Microsoft Active Directory Federation Services

Chapter 11 Cloud Application Development

Deploying the BIG-IP LTM with. Citrix XenApp. Deployment Guide Version 1.2. What s inside: 2 Prerequisites and configuration notes

Configuring Load Balancing

TESTING & INTEGRATION GROUP SOLUTION GUIDE

Configuring a single-tenant BIG-IP Virtual Edition in the Cloud

Configuring the NetBackup 7.7 Cloud Connector for use with StorReduce

This presentation covers virtual application shared services supplied with IBM Workload Deployer version 3.1.

Web Application Firewall

App Orchestration 2.0

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP system v10 with Microsoft Exchange Outlook Web Access 2007

DEPLOYMENT GUIDE DEPLOYING THE BIG-IP LTM SYSTEM WITH ADOBE ACROBAT CONNECT PROFESSIONAL

Introduction to the EIS Guide

App Orchestration 2.5

Connection Broker Managing User Connections to Workstations and Blades, OpenStack Clouds, VDI, and more. Security Review

Microsoft Office Communications Server 2007 & Coyote Point Equalizer Deployment Guide DEPLOYMENT GUIDE

Load balancing Microsoft IAG

Installation Guide Avi Networks Cloud Application Delivery Platform Integration with Cisco Application Policy Infrastructure

Deployment Guide Jan-2016 rev. a. Deploying Array Networks APV Series Application Delivery Controllers with Oracle WebLogic 12c

ALOHA LOAD BALANCER MANAGING SSL ON THE BACKEND & FRONTEND

Load Balancing Oracle Application Server (Oracle HTTP Server) Quick Reference Guide

Deployment Guide AX Series with Active Directory Federation Services 2.0 and Office 365

Configuration Guide. BlackBerry Enterprise Service 12. Version 12.0

Load Balancing. Outlook Web Access. Web Mail Using Equalizer

Configuring Nex-Gen Web Load Balancer

Secure Traffic Inspection

Configuration Guide. BES12 Cloud

HTTP Reverse Proxy Scenarios

DEPLOYMENT GUIDE Version 1.0. Deploying the BIG-IP LTM with the Zimbra Open Source and Collaboration Suite

Version 1.0 January Xerox Phaser 3635MFP Extensible Interface Platform

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP System v10 with Microsoft IIS 7.0 and 7.5

Deployment Guide Oracle Siebel CRM

How To Configure SSL VPN in Cyberoam

Network-Enabled Devices, AOS v.5.x.x. Content and Purpose of This Guide...1 User Management...2 Types of user accounts2

Websense Web Security Gateway: Integrating the Content Gateway component with Third Party Data Loss Prevention Applications

Resonate Central Dispatch

Eucalyptus User Console Guide

EMC Data Protection Search

Dell One Identity Cloud Access Manager How to Configure for High Availability

TECHNICAL NOTE Stormshield Network Firewall AUTOMATIC BACKUPS. Document version: 1.0 Reference: snentno_autobackup

Introduction to Directory Services

Introduction to Mobile Access Gateway Installation

WHITE PAPER Citrix Secure Gateway Startup Guide

USING SSL/TLS WITH TERMINAL EMULATION

HTTPS HTTP. ProxySG Web Server. Client. ProxySG TechBrief Reverse Proxy with SSL. 1 Technical Brief

CloudCIX Bootcamp. The essential IaaS getting started guide.

Connection Broker Managing User Connections to Workstations, Blades, VDI, and more. Security Review

Talari Virtual Appliance CT800. Getting Started Guide

DEPLOYMENT GUIDE Version 1.0. Deploying the BIG-IP LTM System with VMware View

Microsoft Internet Information Services (IIS) Deployment Guide

Customer Tips. Xerox Network Scanning HTTP/HTTPS Configuration using Microsoft IIS. for the user. Purpose. Background

Configuration Guide BES12. Version 12.1

Deployment Guide. Deploying F5 BIG-IP Global Traffic Manager on VMware vcloud Hybrid Service

How to configure HTTPS proxying in Zorp 5

Deploy Remote Desktop Gateway on the AWS Cloud

Setting Up SSL on IIS6 for MEGA Advisor

IIS 6.0SSL Certificate Deployment Guide

Managing the SSL Certificate for the ESRS HTTPS Listener Service Technical Notes P/N REV A01 January 14, 2011

Biznet GIO Cloud Connecting VM via Windows Remote Desktop

DEPLOYMENT GUIDE Version 1.1. Deploying the BIG-IP LTM v10 with Citrix Presentation Server 4.5

Apache JMeter HTTP(S) Test Script Recorder

Thunder Series for SAP Customer Relationship Management (CRM)

REQUIREMENTS AND INSTALLATION OF THE NEFSIS DEDICATED SERVER

ENABLING RPC OVER HTTPS CONNECTIONS TO M-FILES SERVER

Configuration Guide BES12. Version 12.2

Lab Exercise SSL/TLS. Objective. Step 1: Open a Trace. Step 2: Inspect the Trace

Reverse Proxy with SSL - ProxySG Technical Brief

Clearswift Information Governance

Preparing for GO!Enterprise MDM On-Demand Service

Managing Virtual Servers

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP System v9.x with Microsoft IIS 7.0 and 7.5

How to configure SSL proxying in Zorp 3 F5

Cloud Computing project Report

TELNET CLIENT 5.0 SSL/TLS SUPPORT

SSL Inspection Step-by-Step Guide. June 6, 2016

Define and Configure an Application Request Routing Server Farm

Secure Web Appliance. SSL Intercept

How to Make the Client IP Address Available to the Back-end Server

Citrix NetScaler Load Balancer Configuration

DEPLOYMENT GUIDE Version 2.1. Deploying F5 with Microsoft SharePoint 2010

Deployment for Network Proxy in Simpana Environment

Quick Start Guide. Cerberus FTP is distributed in Canada through C&C Software. Visit us today at

On- Prem MongoDB- as- a- Service Powered by the CumuLogic DBaaS Platform

DEPLOYMENT GUIDE Version 1.2. Deploying F5 with Microsoft Exchange Server 2007

vcloud Director User's Guide

Deployment Guide May-2015 rev. a. APV Oracle PeopleSoft Enterprise 9 Deployment Guide

Configuration Guide BES12. Version 12.3

Table of Contents. Chapter 1: Installing Endpoint Application Control. Chapter 2: Getting Support. Index

BlackBerry Enterprise Service 10. Secure Work Space for ios and Android Version: Security Note

How to configure HTTPS proxying in Zorp 6

NSi Mobile Installation Guide. Version 6.2

Transcription:

CumuLogic Load Balancer Overview Guide March 2013 CumuLogic Load Balancer Overview Guide 1

Table of Contents CumuLogic Load Balancer... 3 Architectural Overview of CumuLogic Load Balancer... 4 How to Use CumuLogic Load Balancer... 5 Creating a Load Balancer Instance... 5 Load Balancer Listener Configurations... 7 X- Forwarded- For Support... 7 HTTPS Support... 8 Enabling SSL on the Load Balancer... 8 Configuring the Load Balancer for Applications... 9 Load Balancer Parameter Groups... 10 Load Balancer Access Groups... 11 Monitoring Load Balancer... 12 Terminating the Load Balancer... 13 Load Balancer APIs... 14 CumuLogic Load Balancer Overview Guide 2

CumuLogic Load Balancer CumuLogic Load Balancer provides fully managed instances of load balancer on any Infrastructure- as- a- Service (IaaS) cloud. CumuLogic Load Balancer gives you full access to the functionality and performance of Nginx servers. CumuLogic Load Balancer instances are fully managed and monitored, eliminating the need for manual configuration. Each load balancer instance can automatically detect the cluster nodes it load balances and adjusts its configuration for optimal performance. Users can provision load balancer instances on any IaaS cloud using HTTP API, or the easy- to- use CumuLogic User Console. CumuLogic Load Balancer is based on the open source Ngnix load balancer and supports Layer- 7 HTTP and HTTPS protocols. CumuLogic Load Balancer Overview Guide 3

Architectural Overview of CumuLogic Load Balancer The following diagram shows how the Load Balancer works with various components of the CumuLogic Platform. 1. The client sends an HTTP/HTTPS request to the load balancer to access your application. 2. The load balancer determines where the request should be rerouted depending on the configuration. The default routing algorithm used is round- robin. 3. The load balancer keeps track of the status of all the registered application instances and the nodes are marked inactive if they do not meet the threshold defined in the health check configuration. 4. The load balancer routes the client request to the identified healthy application instance. At this point, the client is communicating with one of the application instances through the load balancer. The load balancer listeners can be configured to use either HTTP, HTTPS for both front- end connection (client to load balancer) and back- end connection (load balancer to back- end instance). CumuLogic Load Balancer Overview Guide 4

How to Use CumuLogic Load Balancer You can use a load balancer instance to configure and load balance application instances deployed on any cloud. CumuLogic Load Balancer is fully managed and is application node- aware, automatically detecting node failures and reconfiguring routing to avoid routing traffic to failed nodes. By default, a load balancer instance is configured to load balance applications deployed on CumuLogic PaaS. CumuLogic Load Balancer can also be configured to route traffic to additional new nodes added to the application. When an application deployed on CumuLogic PaaS autoscales the application server or framework nodes, CumuLogic PaaS automatically reconfigures the load balancer to route traffic to new nodes as well. CumuLogic Load Balancer is also monitored and has self- healing capabilities to recover failures. Creating a Load Balancer Instance CumuLogic Load Balancer can be launched using the User Console or a simple set of API. To create a new instance of the load balancer, select Load Balancer from menu bar on the left and choose the size of the load balancer instance as shown below. CumuLogic Load Balancer Overview Guide 5

Figure 1: Creating a Load Balancer Instance Select the target cloud, availability zone, size of the instance and launch your load balancer. You can also configure the load balancer parameters (see Parameter Groups for details), customize access control (see Access Groups) and customize the preferences for maintenance time windows. Once you have launched a load balancer instance, you can configure it to load balance existing applications/nodes. You need to provide application context, HostName/IP and port numbers of the nodes to load balance. CumuLogic Load Balancer Overview Guide 6

Load Balancer Listener Configurations The following table summarizes the listener settings that you can use to configure CumuLogic Load Balancer. Use Case Protocol Optional config Notes Basic HTTP HTTP - Backend Port Load Balancer - Application context Secure Load balancing using SSL HTTPS - Backend port - Custom Cipher setting (coming soon) - Default ciphers HIGH:!aNULL:!MD5; - SSLv2, SSLv3, TLSv1 protocols X- Forwarded- For Support The X- Forwarded- For request header helps you identify the IP address of a client. Because load balancers intercept traffic between clients and servers, your server access logs contain only the IP address of the load balancer. To see the IP address of the client, use the X- Forwarded- For request header. Elastic load balancer stores the IP address of the client in the X- Forwarded- For request header and passes the header along to your server. The load balancer comes with following default X- Forwarded- For configuration. proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-For $remote_addr; CumuLogic Load Balancer Overview Guide 7

HTTPS Support CumuLogic Load Balancer provides HTTPS support allowing you to use the SSL/TLS protocol for encrypted connections. This enables traffic encryption between the clients that initiate HTTPS request and your load balancer. To enable HTTPS support for your load balancer, you'ʹll have to install an SSL server certificate on your load balancer. The load balancer uses the certificate to terminate and then decrypt requests before sending them to the application instances. Enabling SSL on the Load Balancer You can enable SSL on the load balancer instance by selecting Enable SSL from the action menu on the running load balancer instance. You can enable SSL on CumuLogic Load Balancer by selecting the Enable SSL action. You can enable SSL with self- signed certificate or CA certificates. To enable self- signed certificate, just click on Enable Anonymous, otherwise you can generate and download a CSR will help you create a load balancer using the CumuLogic Service Dashboard Figure 2: Enabling SSL with self- signed certificate CumuLogic Load Balancer Overview Guide 8

To enable SSL with a Root CA certificate, you can select have CA Certificate from the Enable SSL screen and upload the certificate files. Figure 3: Enabling SSL with CA certificate Configuring the Load Balancer for Applications To configure the load balancer instance to load balance between multiple nodes of an application, select the Add Application option from the action menu. Figure 4 Configuring the Load Balancer for Applications CumuLogic Load Balancer Overview Guide 9

Figure 5: Configuring a load balancer instance As shown in the screen above, you can add host names or IP addresses of nodes used for running the application. In this example, the load balancer is configured to route traffic to the petstore sample application, which runs on four nodes in this demo. Load Balancer Parameter Groups Parameter groups allow users to optimize the performance of the load balancer for specific workloads. You can easily create a new parameter group from a parameter family group of the engine and modify the selected parameters. You can apply a parameter group to running instances or start a new load balancer instance with new parameter group. CumuLogic Load Balancer Overview Guide 10

Figure 6: View/Edit Parameter Group Load Balancer Access Groups You can restrict access to your load balancer by configuring the Access Group. You can use an existing Access Group or create a new Access Group specific to a Load Balancer. From the Access Group screen click on Access Group to see current configuration details. You can select desired action from the menu. You can Edit/Delete Access Group. Figure 7: Viewing Access Group CumuLogic Load Balancer Overview Guide 11

To edit Access Group select Edit action. You can define the port range and cidr details to open access to specific ports for specific cidr range. Figure 8: Editing Access Group After Editing the Access Group, you can select Apply to apply the changes to Load Balancer. Monitoring Load Balancer Performance metrics are available under the Monitoring tab. Figure 9: Performance metrics CumuLogic Load Balancer Overview Guide 12

Terminating the Load Balancer To terminate the load balancer instance, select Terminate from the available actions, which will prompt you for confirmation. Once confirmed, the load balancer instance will be terminated along with all configurations. Figure 10: Terminating a Load Balancer Instance CumuLogic Load Balancer Overview Guide 13

Load Balancer APIs APIs allow users to control and optimize a load balancer instance for their specific workloads. Below is a list of currently supported APIs. Request URI Description GET /services/loadbalancers List all Load balancers. Response returns the list of load balancers including loadbalancerid, load balancer Name, Status and Creation date GET /services/loadbalancers/loadbalancerid List details of selected Load Balancer. The response includes Id, name, Created Date, Status, protocols supported, port number, algorithms, list of current nodes and VIP. DELETE /services/loadbalancers/loadbalancerid Deletes the load balancer instance POST /services/loadbalancers/create Creates a new load balancer instance with options provided. Returns details of the load balancer instance, load balancer Id and all options POST DELETE PUT /services/loadbalancers/loadbalancerid/nod es /services/loadbalancers/loadbalancerid/nod es /services/loadbalancers/loadbalancerid/nod es Table 1 Adds a node to load balancer. Request provides node IP address, port number, node name Deletes node load balanced by the load balancer. Request provides node IP address or node name Updates a node to load balancer. Request provides node IP address, port number, node name CumuLogic Load Balancer Overview Guide 14