- LVS-DR-Master 61.164.122.6
- LVS-DR-BACKUP 61.164.122.7
- LVS-DR-VIP 61.164.122.8
- WEB1-Realserver 61.164.122.9
- WEB2-Realserver 61.164.122.10
- GateWay 61.164.122.1
- #mkdir /usr/local/src/lvs
- #cd /usr/local/src/lvs
- #wget http://www.linuxvirtualserver.org/software/kernel-2.6/ipvsadm-1.24.tar.gz
- #wget http://www.keepalived.org/software/keepalived-1.1.15.tar.gz
- #lsmod |grep ip_vs
- #uname -r
- 2.6.18-53.el5PAE
- #ln -s /usr/src/kernels/2.6.18-53.el5PAE-i686/ /usr/src/linux
- #tar zxvf ipvsadm-1.24.tar.gz
- #cd ipvsadm-1.24
- #make && make install
- #find / -name ipvsadm # 查看ipvsadm的位置
- #tar zxvf keepalived-1.1.15.tar.gz
- #cd keepalived-1.1.15
- #./configure && make && make install
- #find / -name keepalived # 查看keepalived位置
-
- #cp /usr/local/etc/rc.d/init.d/keepalived /etc/rc.d/init.d/
- #cp /usr/local/etc/sysconfig/keepalived /etc/sysconfig/
- #mkdir /etc/keepalived
- #cp /usr/local/etc/keepalived/keepalived.conf /etc/keepalived/
- #cp /usr/local/sbin/keepalived /usr/sbin/
- #service keepalived start|stop #做成系统启动服务方便管理.
- #vi /usr/local/sbin/lvs-dr.sh
- #!/bin/bash
- # description: start LVS of DirectorServer
- #Written by :NetSeek http://www.linuxtone.org
-
- GW=61.164.122.1
- # website director vip.
- SNS_VIP=61.164.122.8
- SNS_RIP1=61.164.122.9
- SNS_RIP2=61.164.122.10
- ./etc/rc.d/init.d/functions
- logger $0 called with $1
- case "$1" in
- start)
- # set squid vip
- /sbin/ipvsadm --set 30 5 60
- /sbin/ifconfig eth0:0 $SNS_VIP broadcast $SNS_VIP netmask 255.255.255.255 broadcast $SNS_VIP up
- /sbin/route add -host $SNS_VIP dev eth0:0
- /sbin/ipvsadm -A -t $SNS_VIP:80 -s wrr -p 3
- /sbin/ipvsadm -a -t $SNS_VIP:80 -r $SNS_RIP1:80 -g -w 1
- /sbin/ipvsadm -a -t $SNS_VIP:80 -r $SNS_RIP2:80 -g -w 1
- touch /var/lock/subsys/ipvsadm >/dev/null 2>&1
- ;;
- stop)
- /sbin/ipvsadm -C
- /sbin/ipvsadm -Z
- ifconfig eth0:0 down
- route del $SNS_VIP
- rm -rf /var/lock/subsys/ipvsadm >/dev/null 2>&1
- echo "ipvsadm stoped"
- ;;
- status)
- if [ ! -e /var/lock/subsys/ipvsadm ];then
- echo "ipvsadm stoped"
- exit 1
- else
- echo "ipvsadm OK"
- fi
- ;;
- *)
- echo "Usage: $0 {start|stop|status}"
- exit 1
- esac
- exit 0
- #vi /usr/local/sbin/realserver.sh
- #!/bin/bash
- # description: Config realserver lo and apply noarp
- #Written by :NetSeek http://www.linuxtone.org
-
- SNS_VIP=61.164.122.8
-
- . /etc/rc.d/init.d/functions
-
- case "$1" in
- start)
- ifconfig lo:0 $SNS_VIP netmask 255.255.255.255 broadcast $SNS_VIP
- /sbin/route add -host $SNS_VIP dev lo:0
- echo "1" >/proc/sys/net/ipv4/conf/lo/arp_ignore
- echo "2" >/proc/sys/net/ipv4/conf/lo/arp_announce
- echo "1" >/proc/sys/net/ipv4/conf/all/arp_ignore
- echo "2" >/proc/sys/net/ipv4/conf/all/arp_announce
- sysctl -p >/dev/null 2>&1
- echo "RealServer Start OK"
-
- ;;
- stop)
- ifconfig lo:0 down
- route del $SNS_VIP >/dev/null 2>&1
- echo "0" >/proc/sys/net/ipv4/conf/lo/arp_ignore
- echo "0" >/proc/sys/net/ipv4/conf/lo/arp_announce
- echo "0" >/proc/sys/net/ipv4/conf/all/arp_ignore
- echo "0" >/proc/sys/net/ipv4/conf/all/arp_announce
- echo "RealServer Stoped"
- ;;
- *)
- echo "Usage: $0 {start|stop}"
- exit 1
- esac
-
- exit 0
- net.ipv4.conf.lo.arp_ignore = 1
- net.ipv4.conf.lo.arp_announce = 2
- net.ipv4.conf.all.arp_ignore = 1
- net.ipv4.conf.all.arp_announce = 2
- [code]
- #sysctl ?p
- #ip addr add 61.164.122.8/32 dev lo
- #ip add list 查看是否绑定
- 3. 启动lvs-dr脚本和realserver启本,在DR上可以查看LVS当前状态:
- #watch ipvsadm ?ln
- ! Configuration File for keepalived
- global_defs {
- notification_email {
- cnseek@gmail.com
- }
- notification_email_from sns-lvs@gmail.com
- smtp_server 127.0.0.1
- # smtp_connect_timeout 30
- router_id LVS_DEVEL
- }
- # 20081013 written by :netseek
- # VIP1
- vrrp_instance VI_1 {
- state MASTER #备份服务器上将MASTER改为BACKUP
- interface eth0
- virtual_router_id 51
- priority 100 # 备份服务上将100改为99
- advert_int 1
- authentication {
- auth_type PASS
- auth_pass 1111
- }
- virtual_ipaddress {
- 61.164.122.8
- #(如果有多个VIP,继续换行填写.)
- }
- }
- virtual_server 61.164.122.8 80 {
- delay_loop 6 #(每隔10秒查询realserver状态)
- lb_algo wrr #(lvs 算法)
- lb_kind DR #(Direct Route)
- persistence_timeout 60 #(同一IP的连接60秒内被分配到同一台realserver)
- protocol TCP #(用TCP协议检查realserver状态)
- real_server 61.164.122.9 80 {
- weight 3 #(权重)
- TCP_CHECK {
- connect_timeout 10 #(10秒无响应超时)
- nb_get_retry 3
- delay_before_retry 3
- connect_port 80
- }
- }
- real_server 61.164.122.10 80 {
- weight 3
- TCP_CHECK {
- connect_timeout 10
- nb_get_retry 3
- delay_before_retry 3
- connect_port 80
- }
- }
- }
- IP Virtual Server version 1.2.1 (size=4096)
- Prot LocalAddressort Scheduler Flags
- -> RemoteAddressort Forward Weight ActiveConn InActConn
- TCP 61.164.122.8:80 wrr persistent 60
- -> 61.164.122.10:80 Route 3 0 0
- -> 61.164.122.9:80 Route 3 0 0