Deployment Example 1: Access Manager 7.0 Load Balancing, Distributed Authentication UI, and Session Failover

Appendix F Load Balancers

Table F–1 Load Balancer Configurations

Component  

Description 

 

Host 

Computer system that hosts all virtual servers in this deployment example. 

 

Host Name 

is-f5.example.com 

Load Balancer 1 

Access Manager Configuration Stores 

Virtual Service Address for the Access Manager configuration store.  

Configured for cookie and IP-based stickiness and TCP (HTTP and LDAP) load balancing. 

 

Instance Name 

LoadBalancer-1 

 

Port Number 

389 

 

Pool Name 

AccessManager-Pool 

 

Virtual Server and Port Number 

LoadBalancer-1.example.com:389  

 

Monitor 

ldap-tcp 

Load Balancer 2 

Directory Server User Data Stores 

Virtual Service Address for the User Data store. 

 

Instance Name 

LoadBalancer-2 

 

Port Number 

489 

 

Pool Name 

DirectoryServer-UserData-Pool 

 

Virtual Server and Port Number 

LoadBalancer-2.example.com:489 

 

Monitor 

ldap-tcp 

Load Balancer 3 

Access Manager Servers 

Virtual Service Address for the Access Manager Web Server instances. 

SSL is terminated at this at this load balancer before the request is forwarded to the Access Manager Servers. This load-balancer is the single point-of-failure for Access Manager and can be considered a limitation of this deployment example.  

Configured for cookie and IP— based stickiness and TCP (HTTP and LDAP) load balancing.  

External users access port 9443, while internal users will access port 90. 

 

Instance Name 

LoadBalancer-3 

 

Port Number 

90 and 9443 

 

Pool Name 

AccessManager-Pool 

 

Virtual Server and Port Number 

LoadBalancer-3.example.com:90  

 

Monitor 

AccessManager-http 

Load Balancer 4 

Distributed Authentication UI Servers 

Virtual Service Address for the Distributed Authentication UI web server instances. 

SSL is terminated at this load balancer before the request is forwarded to the Distributed Authentication UI servers.  

Configured for cookie and IP-based stickiness and TCP (HTTP and LDAP) load balancing. 

 

Instance Name 

LoadBalancer-4 

 

Port Number 

90 and 9443 

 

Pool Name 

AuthenticationUI-Pool 

 

Virtual Server and Port Number 

LoadBalancer-4.example.com:90 

 

Monitor 

http-monitor 

Load Balancer 5 

Web Policy Agents 

Virtual Service Address for Web Policy Agents. 

Configured for cookie and IP— based stickiness and TCP (HTTP and LDAP) load balancing. 

 

Instance Name 

LoadBalancer-5 

 

Port Number 

90 

 

Pool Name 

WebAgent-Pool 

 

Virtual Server and Port Number 

LoadBalancer-5.example.com:90 

 

Monitor 

WebAgent-http 

Load Balancer 6 

J2EE Policy Agents 

Virtual Service Address for J2EE Policy Agents 

Configured for cookie and IP-based stickiness and TCP (HTTP and LDAP) load balancing. 

 

Instance Name 

LoadBalancer-6 

 

Port Number 

91 

 

Pool Name 

J2EEAgent-Pool 

 

Virtual Server and Port Number 

LoadBalancer-6.example.com:91 

 

Monitor 

tcp