config firewall vip
edit "LB-HTTP-VIP"
set uuid 1e1ea188-96ce-51e7-8b62-c9628d763e65
set type server-load-balance
set extip 10.5.16.35
set extintf "any"
set server-type tcp
set monitor "ICMP"
set color 1
set ldb-method least-session
set extport 80
config realservers
edit 1
set ip 10.118.0.100
set port 80
next
end
next
end
config firewall ldb-monitor
edit "ICMP"
set type ping
next
end
5KD-A-3 (VD1) # diag firewall vip realserver list
alloc=3
------------------------------
vf=2 name=LB-HTTP-VIP/4 type=3 10.5.16.35:(80-80), protocol=6
total=2 alive=1 power=1 ptr=76870143
ip=10.118.0.100-10.118.0.100:80 adm_status=0 holddown_interval=300 max_connections=0 weight=1 option=01
alive=1 total=1 enable=00000001 alive=00000001 power=1
src_sz=0
id=0 status=up ks=0 us=0 events=1 bytes=0 rtt=0
5KD-A-4 (VD1) # diag firewall vip realserver list
alloc=3
------------------------------
vf=1 name=LB-HTTP-VIP/3 type=3 10.5.16.35:(80-80), protocol=6
total=2 alive=0 power=0 ptr=42719710
ip=10.118.0.100-10.118.0.100:80 adm_status=0 holddown_interval=300 max_connections=0 weight=1 option=01
alive=0 total=1 enable=00000001 alive=00000000 power=0
src_sz=0
id=0 status=down ks=0 us=0 events=0 bytes=0 rtt=0
id=20085 trace_id=14 func=print_pkt_detail line=4903 msg="vd-VD1 received a packet(proto=6, 172.26.128.66:6689->10.5.16.35:80) from VLAN2_VD1. flag [S], seq 2480966248, ack 0, win 64240"
id=20085 trace_id=14 func=init_ip_session_common line=5047 msg="allocate a new session-0457f0bd"
id=20085 trace_id=15 func=print_pkt_detail line=4903 msg="vd-VD1 received a packet(proto=6, 172.26.128.66:6688->10.5.16.35:80) from VLAN2_VD1. flag [S], seq 3896442640, ack 0, win 64240"
id=20085 trace_id=15 func=init_ip_session_common line=5047 msg="allocate a new session-0457f0c4"
config firewall ldb-monitor
edit "HTTP"
set type tcp
set port 80
next
end
config firewall vip
edit "LB-HTTP-VIP"
set monitor "HTTP"
end
vf=2 name=LB-HTTP-VIP/4 type=3 10.5.16.35:(80-80), protocol=6
total=2 alive=1 power=1 ptr=76870143
ip=10.118.0.100-10.118.0.100:80 adm_status=0 holddown_interval=300 max_connections=0 weight=1 option=01
alive=1 total=1 enable=00000001 alive=00000001 power=1
src_sz=0
id=0 status=up ks=0 us=0 events=1 bytes=0 rtt=1
5KD-A-4 (VD1) # diag firewall vip realserver list
alloc=3
------------------------------
vf=1 name=LB-HTTP-VIP/3 type=3 10.5.16.35:(80-80), protocol=6
total=2 alive=1 power=1 ptr=42719710
ip=10.118.0.100-10.118.0.100:80 adm_status=0 holddown_interval=300 max_connections=0 weight=1 option=01
alive=1 total=1 enable=00000001 alive=00000001 power=1
src_sz=0
id=0 status=up ks=0 us=0 events=1 bytes=0 rtt=0
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.