07-13-Exchange Server 2019-configuration-High availability-Linux load balancer
[enter the article title here]
"actual combat training for system engineers"
-07-deploy the mail system
-13-Exchange Server 2019-
Configuration-High availability-Linux load balancer
Author: endless learning
QQ communication group: 454544014
Telnet mail.i-x-Cloud.com 25
Http://mail.i-x-cloud.com:1080/haproxyadmin?stats
C:\ Users\ Administrator.i-x-Cloud > nslookup
Default server: 011-DC01.i-x-Cloud.com
Address: 10.1.1.11
> mail.i-x-Cloud.com
Server: 011-DC01.i-x-Cloud.com
Address: 10.1.1.11
Name: mail.i-x-Cloud.com
Address: 10.1.1.55
> autodiscover.i-x-Cloud.com
Server: 011-DC01.i-x-Cloud.com
Address: 10.1.1.11
Name: autodiscover.i-x-Cloud.com
Address: 10.1.1.55
> set type=mx
> i-x-Cloud.com
Server: 011-DC01.i-x-Cloud.com
Address: 10.1.1.11
I-x-Cloud.com MX preference = 10, mail exchanger = mail.i-x-Cloud.com
Mail.i-x-Cloud.com internet address = 10.1.1.55
>
Telnet mail.i-x-Cloud.com 25
*
Shut down the first mail server! Shut down the second mail server!
Only ensure that the third mail server is turned on!
Telnet mail.i-x-Cloud.com 25
*
Turn on the second mail server! Shut down the third mail server!
Only ensure that the second mail server is turned on!
Telnet mail.i-x-Cloud.com 25
*
Power on the first mail server! Shut down the second mail server!
Only ensure that the first mail server is turned on!
Telnet mail.i-x-Cloud.com 25
241-HaproxyKA01\ haproxy.conf
Defaults
Option dontlognull # Do not log connections with no requests
Option redispatch # Try another server in case of connection failure
Option contstats # Enable continuous traffic statistics updates
Retries 3 # Try to connect up to 3 times in case of failure
Timeout connect 5s # 5 seconds max to connect or to stay in queue
Timeout http-keep-alive 1s # 1 second max for the client to post next request
Timeout http-request 15s # 15 seconds max for the client to send a request
Timeout queue 30s # 30 seconds max queued on load balancer
Timeout tarpit 1m # tarpit hold tim
Backlog 10000 # Size of SYN backlog queue
Balance roundrobin # alctl: load balancing algorithm
Mode tcp # alctl: protocol analyser
Option tcplog # alctl: log format
Log global # alctl: log activation
Timeout client 300s # alctl: client inactivity timeout
Timeout server 300s # alctl: server inactivity timeout
Default-server inter 3s rise 2 fall 3 # alctl: default check parameters
Listen stats
Mode http
Bind 0.0.0.0:1080
Stats enable
Stats hide-version
Stats uri / haproxyadmin?stats
Stats realm Haproxy\ Statistics
Stats auth admin:admin
Stats admin if TRUE
Frontend ft_exchange_HTTP
Bind 10.1.1.55:80 name web
Maxconn 10000
Default_backend bk_exchange_HTTP
Backend bk_exchange_HTTP
Server 051-Ex01 10.1.1.51:80 maxconn 10000
Server 052-Ex02 10.1.1.52:80 maxconn 10000
Server 053-Ex03 10.1.1.53:80 maxconn 10000
Frontend ft_exchange_SSL
Bind 10.1.1.55:443 name ssl
Maxconn 10000 # alctl: connection max (depends on capacity)
Default_backend bk_exchange_SSL # alctl: default farm to use
Backend bk_exchange_SSL
Server 051-Ex01 10.1.1.51:443 maxconn 10000
Server 052-Ex02 10.1.1.52:443 maxconn 10000
Server 053-Ex03 10.1.1.53:443 maxconn 10000
Frontend ft_exchange_SMTP
Bind 10.1.1.55:25 name smtp
Maxconn 10000
Default_backend bk_exchange_SMTP
Backend bk_exchange_SMTP
Server 051-Ex01 10.1.1.51:25 maxconn 10000
Server 052-Ex02 10.1.1.52:25 maxconn 10000
Server 053-Ex03 10.1.1.53:25 maxconn 10000
Frontend ft_exchange_SMTP_Secure
Bind 10.1.1.55:465 name smtpssl
Maxconn 10000
Default_backend bk_exchange_SMTP_Secure
Backend bk_exchange_SMTP_Secure
Server 051-Ex01 10.1.1.51:465 maxconn 10000
Server 052-Ex02 10.1.1.52:465 maxconn 10000
Server 053-Ex03 10.1.1.53:465 maxconn 10000
Frontend ft_exchange_IMAP
Bind 10.1.1.55:143 name imap
Maxconn 10000
Default_backend bk_exchange_IMAP
Backend bk_exchange_IMAP
Server 051-Ex01 10.1.1.51:143 maxconn 10000
Server 052-Ex02 10.1.1.52:143 maxconn 10000
Server 053-Ex03 10.1.1.53:143 maxconn 10000
Frontend ft_exchange_IMAP_Secure
Bind 10.1.1.55:993 name imapssl
Maxconn 10000
Default_backend bk_exchange_IMAP_Secure
Backend bk_exchange_IMAP_Secure
Server 051-Ex01 10.1.1.51:993 maxconn 10000
Server 052-Ex02 10.1.1.52:993 maxconn 10000
Server 053-Ex03 10.1.1.53:993 maxconn 10000
Frontend ft_exchange_POP3
Bind 10.1.1.55:110 name pop3
Maxconn 10000
Default_backend bk_exchange_POP3
Backend bk_exchange_POP3
Server 051-Ex01 10.1.1.51:110 maxconn 10000
Server 052-Ex02 10.1.1.52:110 maxconn 10000
Server 053-Ex03 10.1.1.53:110 maxconn 10000
Frontend ft_exchange_POP3_Secure
Bind 10.1.1.55:995 name pop3ssl
Maxconn 10000
Default_backend bk_exchange_POP3_Secure
Backend bk_exchange_POP3_Secure
Server 051-Ex01 10.1.1.51:995 maxconn 10000
Server 052-Ex02 10.1.1.52:995 maxconn 10000
Server 053-Ex03 10.1.1.53:995 maxconn 10000
241-HaproxyKA01\ keepalived.conf
Global_defs {
Notification_email {
Administrator@i-x-Cloud.com
}
# notification_email_from 241-HaproxyKA01@i-x-Cloud.com
Smtp_server 10.1.1.55
Smtp_connect_timeout 30
}
Vrrp_script check_haproxy {
Script "killall-0 haproxy"
Interval 2
Weight 2
}
Vrrp_instance VI_1 {
Interface eth0
State MASTER
Virtual_router_id 10
Priority 111
Virtual_ipaddress {
10.1.1.55
}
Track_script {
Check_haproxy
}
Smtp_alert
}
242-HaproxyKA02\ haproxy.conf
Defaults
Option dontlognull # Do not log connections with no requests
Option redispatch # Try another server in case of connection failure
Option contstats # Enable continuous traffic statistics updates
Retries 3 # Try to connect up to 3 times in case of failure
Timeout connect 5s # 5 seconds max to connect or to stay in queue
Timeout http-keep-alive 1s # 1 second max for the client to post next request
Timeout http-request 15s # 15 seconds max for the client to send a request
Timeout queue 30s # 30 seconds max queued on load balancer
Timeout tarpit 1m # tarpit hold tim
Backlog 10000 # Size of SYN backlog queue
Balance roundrobin # alctl: load balancing algorithm
Mode tcp # alctl: protocol analyser
Option tcplog # alctl: log format
Log global # alctl: log activation
Timeout client 300s # alctl: client inactivity timeout
Timeout server 300s # alctl: server inactivity timeout
Default-server inter 3s rise 2 fall 3 # alctl: default check parameters
Listen stats
Mode http
Bind 0.0.0.0:1080
Stats enable
Stats hide-version
Stats uri / haproxyadmin?stats
Stats realm Haproxy\ Statistics
Stats auth admin:admin
Stats admin if TRUE
Frontend ft_exchange_HTTP
Bind 10.1.1.55:80 name web
Maxconn 10000
Default_backend bk_exchange_HTTP
Backend bk_exchange_HTTP
Server 051-Ex01 10.1.1.51:80 maxconn 10000
Server 052-Ex02 10.1.1.52:80 maxconn 10000
Server 053-Ex03 10.1.1.53:80 maxconn 10000
Frontend ft_exchange_SSL
Bind 10.1.1.55:443 name ssl
Maxconn 10000 # alctl: connection max (depends on capacity)
Default_backend bk_exchange_SSL # alctl: default farm to use
Backend bk_exchange_SSL
Server 051-Ex01 10.1.1.51:443 maxconn 10000
Server 052-Ex02 10.1.1.52:443 maxconn 10000
Server 053-Ex03 10.1.1.53:443 maxconn 10000
Frontend ft_exchange_SMTP
Bind 10.1.1.55:25 name smtp
Maxconn 10000
Default_backend bk_exchange_SMTP
Backend bk_exchange_SMTP
Server 051-Ex01 10.1.1.51:25 maxconn 10000
Server 052-Ex02 10.1.1.52:25 maxconn 10000
Server 053-Ex03 10.1.1.53:25 maxconn 10000
Frontend ft_exchange_SMTP_Secure
Bind 10.1.1.55:465 name smtpssl
Maxconn 10000
Default_backend bk_exchange_SMTP_Secure
Backend bk_exchange_SMTP_Secure
Server 051-Ex01 10.1.1.51:465 maxconn 10000
Server 052-Ex02 10.1.1.52:465 maxconn 10000
Server 053-Ex03 10.1.1.53:465 maxconn 10000
Frontend ft_exchange_IMAP
Bind 10.1.1.55:143 name imap
Maxconn 10000
Default_backend bk_exchange_IMAP
Backend bk_exchange_IMAP
Server 051-Ex01 10.1.1.51:143 maxconn 10000
Server 052-Ex02 10.1.1.52:143 maxconn 10000
Server 053-Ex03 10.1.1.53:143 maxconn 10000
Frontend ft_exchange_IMAP_Secure
Bind 10.1.1.55:993 name imapssl
Maxconn 10000
Default_backend bk_exchange_IMAP_Secure
Backend bk_exchange_IMAP_Secure
Server 051-Ex01 10.1.1.51:993 maxconn 10000
Server 052-Ex02 10.1.1.52:993 maxconn 10000
Server 053-Ex03 10.1.1.53:993 maxconn 10000
Frontend ft_exchange_POP3
Bind 10.1.1.55:110 name pop3
Maxconn 10000
Default_backend bk_exchange_POP3
Backend bk_exchange_POP3
Server 051-Ex01 10.1.1.51:110 maxconn 10000
Server 052-Ex02 10.1.1.52:110 maxconn 10000
Server 053-Ex03 10.1.1.53:110 maxconn 10000
Frontend ft_exchange_POP3_Secure
Bind 10.1.1.55:995 name pop3ssl
Maxconn 10000
Default_backend bk_exchange_POP3_Secure
Backend bk_exchange_POP3_Secure
Server 051-Ex01 10.1.1.51:995 maxconn 10000
Server 052-Ex02 10.1.1.52:995 maxconn 10000
Server 053-Ex03 10.1.1.53:995 maxconn 10000
242-HaproxyKA02\ keepalived.conf
Global_defs {
Notification_email {
Administrator@i-x-Cloud.com
}
# notification_email_from 241-HaproxyKA01@i-x-Cloud.com
Smtp_server 10.1.1.55
Smtp_connect_timeout 30
}
Vrrp_script check_haproxy {
Script "killall-0 haproxy"
Interval 2
Weight 2
}
Vrrp_instance VI_1 {
Interface eth0
State MASTER
Virtual_router_id 10
Priority 111
Virtual_ipaddress {
10.1.1.55
}
Track_script {
Check_haproxy
}
Smtp_alert
}
Shutdown
Snapshot
100-Admin01.i-x-Cloud.com
011-DC01.i-x-Cloud.com
012-DC02.i-x-Cloud.com
013-DC03.i-x-Cloud.com
021-CA01.i-x-Cloud.com
031-WSUS01.i-x-Cloud.com
041-OOS01.i-x-Cloud.com
051-Ex01.i-x-Cloud.com
052-Ex02.i-x-Cloud.com
053-Ex03.i-x-Cloud.com
061-SFBBE01.i-x-Cloud.com
071-SFBFE01.i-x-Cloud.com
201-UCDemo01.i-x-Cloud.com
202-UCDemo02.i-x-Cloud.com
241-HaproxyKA01.i-x-Cloud.com
242-HaproxyKA02.i-x-Cloud.com
009-Linux_LB_For_Exchange_2019-OK
This article has been completed!