设为首页 收藏本站
查看: 1116|回复: 0

[经验分享] Nginx Keepalived 双主(互为主从)安装与配置

[复制链接]

尚未签到

发表于 2018-12-29 09:07:24 | 显示全部楼层 |阅读模式
  安装环境:
  OS:   CentOS release 6.5 (Final)
  WEB1:   192.168.1.100
  WEB2:   192.168.1.101
  VIP:   192.168.1.201/202/203/204/205/206
  

  注:VIP 可以根据需要进行配置,例如只需要配置192.168.1.201/202 做双主.
  一. keepalived 安装,WEB1,WEB2服务器都需要安装.
  安装依赖程序包:
  yum install openssl-devel
  yum install popt-devel
  keepalived安装
  cd /opt
  wget http://www.keepalived.org/software/keepalived-1.2.12.tar.gz
  tar xzf keepalived-1.2.12.tar.gz;
  cd keepalived-1.2.12
  ./configure --prefix=/usr/local/keepalived-1.2.12;
  make && make install
  cp /usr/local/keepalived-1.2.12/etc/rc.d/init.d/keepalived /etc/init.d/
  cp /usr/local/keepalived-1.2.12/etc/sysconfig/keepalived /etc/sysconfig/
  chmod +x /etc/init.d/keepalived;
  chkconfig --add keepalived;
  chkconfig keepalived on
  mkdir -p /etc/keepalived     //程序默认使用此目录下面的应用配置.
  ln -s /usr/local/keepalived-1.2.12/sbin/keepalived /usr/sbin/
  

  安装错误处理:
  configure: error:
  !!! OpenSSL is not properly installed on your system. !!!
  !!! Can not include OpenSSL headers files. !!!
  

  安装keepalived出现如上错误。
  解决方案:安装OpenSSL。
  方法很简单,如果是centos,用yum安装就行。
  

  sudo yum install -y openssl openssl-devel
  

  二.keepalived 应用配置
  1> WEB1服务器 keepalived配置:
  

  [root@WEB1:~]# cat /etc/keepalived/keepalived.conf
  ! Configuration File for keepalived
  global_defs {
  notification_email {
  admin@domain.com
  }
  notification_email_from admin@domain.com
  smtp_server 192.168.1.254
  smtp_connect_timeout 30
  router_id LVS_DEVEL
  }
  vrrp_script chk_http_port {
  script "/etc/keepalived/nginx_pid.sh"
  interval 2
  weight 2
  }
  vrrp_instance VI_1 {
  state MASTER                //主要IP
  interface eth0
  virtual_router_id 51
  priority 100
  advert_int 1
  authentication {
  auth_type PASS
  auth_pass domain.com
  }
  track_script {
  chk_http_port
  }
  

  virtual_ipaddress {
  192.168.1.201
  192.168.1.203
  192.168.1.205
  }
  }
  vrrp_instance VI_2 {
  state BACKUP                 //备用IP
  interface eth0
  virtual_router_id 52
  priority 99
  advert_int 1
  authentication {
  auth_type PASS
  auth_pass 1domain.com
  }
  virtual_ipaddress {
  192.168.1.202
  192.168.1.204
  192.168.1.206
  }
  }
  2> WEB2服务器 keepalived配置:
  

  [root@WEB2:~]# cat /etc/keepalived/keepalived.conf
  ! Configuration File for keepalived
  global_defs {
  notification_email {
  admin@domain.com
  }
  notification_email_from admin@domain.com
  smtp_server 192.168.1.254
  smtp_connect_timeout 30
  router_id LVS_DEVEL
  }
  vrrp_script chk_http_port {
  script "/etc/keepalived/nginx_pid.sh"
  interval 2
  weight 2
  }
  vrrp_instance VI_1 {
  state BACKUP                  //备用IP
  interface eth0
  virtual_router_id 51
  priority 99
  advert_int 1
  authentication {
  auth_type PASS
  auth_pass domain.com
  }
  track_script {
  chk_http_port
  }
  

  virtual_ipaddress {
  192.168.1.201
  192.168.1.203
  192.168.1.205
  }
  }
  vrrp_instance VI_2 {
  state MASTER            //主要IP
  interface eth0
  virtual_router_id 52
  priority 100
  advert_int 1
  authentication {
  auth_type PASS
  auth_pass 1domain.com
  }
  virtual_ipaddress {
  192.168.1.202
  192.168.1.204
  192.168.1.206
  }
  }
  三. WEB1,WEB2 服务器上面的nginx 监控脚本:
  chmod 755 /etc/keepalived/nginx_pid.sh
  # cat /etc/keepalived/nginx_pid.sh
  #!/bin/bash
  A=`ps -C nginx --no-header |wc -l`
  if [ $A -eq 0 ];then
  /usr/local/nginx/sbin/nginx
  sleep 3
  if [ `ps -C nginx --no-header |wc -l` -eq 0 ];then
  killall keepalived
  fi
  fi
  

  四.keepalived 的关闭与启动:
  

  /etc/init.d/keepalived stop
  /etc/init.d/keepalived start
  

  注: WEB1:/]# /etc/init.d/keepalived
  Usage: /etc/init.d/keepalived {start|stop|reload|restart|condrestart|status}
  

  五.功能验证
  

  1> WEB1/WEB2 服务器的keepalived 正常启动后:
  WEB1服务器检查:
  [root@WEB1:/]# ip add
  2: eth0:  mtu 1500 qdisc pfifo_fast state UP qlen 1000
  link/ether 02:0c:33:4f:da:4t brd ff:ff:ff:ff:ff:ff
  inet 192.168.1.100/24 brd 192.168.1.255 scope global eth0
  inet 192.168.1.201/32 scope global eth0
  inet 192.168.1.203/32 scope global eth0
  inet 192.168.1.205/32 scope global eth0
  

  WEB2服务器检查:
  [root@WEB2:/]# ip add
  2: eth0:  mtu 1500 qdisc pfifo_fast state UP qlen 1000
  link/ether 02:0c:33:4f:ya:4t brd ff:ff:ff:ff:ff:ff
  inet 192.168.1.101/24 brd 192.168.1.255 scope global eth0
  inet 192.168.1.202/32 scope global eth0
  inet 192.168.1.204/32 scope global eth0
  inet 192.168.1.206/32 scope global eth0
  

  2>当WEB1 keepalived 启动,而WEB2关闭后;所有的VIP 都跑在WEB1上面,反之者在WEB2上面:
  WEB1服务器检查:
  [root@WEB1:/]# ip add
  2: eth0:  mtu 1500 qdisc pfifo_fast state UP qlen 1000
  link/ether 02:0c:33:4f:da:4t brd ff:ff:ff:ff:ff:ff
  inet 192.168.1.100/24 brd 192.168.1.255 scope global eth0
  inet 192.168.1.201/32 scope global eth0
  inet 192.168.1.203/32 scope global eth0
  inet 192.168.1.205/32 scope global eth0
  inet 192.168.1.202/32 scope global eth0
  inet 192.168.1.204/32 scope global eth0
  inet 192.168.1.206/32 scope global eth0
  

  WEB2服务器检查:
  [root@WEB2:/]# ip add
  2: eth0:  mtu 1500 qdisc pfifo_fast state UP qlen 1000
  link/ether 02:0c:e3:4f:bb:4t brd ff:ff:ff:ff:ff:ff
  inet 192.168.1.101/24 brd 192.168.1.255 scope global eth0
  注:如果VIP不能正常漂移请检查防火墙配置,及分析 keepalived 日志,本文暂未进行格式化日志配置.
  >>>>>




运维网声明 1、欢迎大家加入本站运维交流群:群②:261659950 群⑤:202807635 群⑦870801961 群⑧679858003
2、本站所有主题由该帖子作者发表,该帖子作者与运维网享有帖子相关版权
3、所有作品的著作权均归原作者享有,请您和我们一样尊重他人的著作权等合法权益。如果您对作品感到满意,请购买正版
4、禁止制作、复制、发布和传播具有反动、淫秽、色情、暴力、凶杀等内容的信息,一经发现立即删除。若您因此触犯法律,一切后果自负,我们对此不承担任何责任
5、所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其内容的准确性、可靠性、正当性、安全性、合法性等负责,亦不承担任何法律责任
6、所有作品仅供您个人学习、研究或欣赏,不得用于商业或者其他用途,否则,一切后果均由您自己承担,我们对此不承担任何法律责任
7、如涉及侵犯版权等问题,请您及时通知我们,我们将立即采取措施予以解决
8、联系人Email:admin@iyunv.com 网址:www.yunweiku.com

所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其承担任何法律责任,如涉及侵犯版权等问题,请您及时通知我们,我们将立即处理,联系人Email:kefu@iyunv.com,QQ:1061981298 本贴地址:https://www.yunweiku.com/thread-657068-1-1.html 上篇帖子: 编译安装配置keepalived 1.2.16 下篇帖子: 集群系列教程之:keepalived+lvs 部署
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

扫码加入运维网微信交流群X

扫码加入运维网微信交流群

扫描二维码加入运维网微信交流群,最新一手资源尽在官方微信交流群!快快加入我们吧...

扫描微信二维码查看详情

客服E-mail:kefu@iyunv.com 客服QQ:1061981298


QQ群⑦:运维网交流群⑦ QQ群⑧:运维网交流群⑧ k8s群:运维网kubernetes交流群


提醒:禁止发布任何违反国家法律、法规的言论与图片等内容;本站内容均来自个人观点与网络等信息,非本站认同之观点.


本站大部分资源是网友从网上搜集分享而来,其版权均归原作者及其网站所有,我们尊重他人的合法权益,如有内容侵犯您的合法权益,请及时与我们联系进行核实删除!



合作伙伴: 青云cloud

快速回复 返回顶部 返回列表