Setting Up Load Balancer
- Open the navigation menu and select Networking. Then select Load Balancers.
-
Create Load Balancer > Load Balancer > Create Load Balancer.
See Changing a Load Balancer's Bandwidth Shape for more information.
-
Enter the following:In the Load Balancer Name field,
- Load Balancer Name
- Enter a name to identify the load balancer.
- Choose Visibility Type
- Select Private.
- Virtual Cloud Network
- Select the VCN used by the Big Data Service cluster.
- Subnet
- Select the same subnet used by the Big Data Service customer subnet.
- Select Next.
- Under Choose Backends, Select appropriate policy based on the need. See Load Balancer Policies. For example, Weighted Round Robin. Don't add backends at this point, this is completed in later step.
-
Under Specify Health Check Policy, enter the following:
- Port
- Set port used by Ranger Admin. This value can be fetched using
ranger.service.https.portfromranger-admin-site.xmlor through the Ambari UI. Default is 6182 for HTTPS protocol.
- URL Path
- Enter /login.jsp.
- Check Use SSL.
- Select Load Balancer Managed Certificate as the Certificate Resource.
- Select Paste SSL Certificate.
-
In the SSL Certificate box, paste certificate content from
/etc/security/serverKeys/bdsOracleCA.crt. For public certificate authorities (CAs), the certificate can be obtained directly from their site. Its the root/CA certificate.Note
Certificate content from this path can be obtained from any of the Big Data Service nodes. - Check Specify CA Certificate.
- Select Paste SSL Certificate.
-
In the SSL Certificate box, paste certificate content from
/etc/security/serverKeys/bdsOracleCA.crt.Note
Certificate content from this path can be obtained from any of the Big Data Service nodes. - Under Backend Set Name, enter a name. For example, Ranger-Admin-Backends.
- Select Session Persistence.
- Select Enable application cookie persistence.
- For Cookie Name, enter *.
- Select Next.
- Enter a Listener Name. For example, Ranger-Admin-HA-Listener.
-
For Specify the type of traffic your listener handles, select HTTPS and set port to 6182.
See SSL Certificate Management for more information.
- Select Next.
- (Optional) Enable Error Logs.
- (Optional) Enable Access Logs.
- Select Submit.
- Under Resources, select Backend Sets.
- Select the newly created backend set. For example, Ranger-Admin-Backend.
- Under Resources, select Backends.
- Select Add Backend, and then select IP Addresses.
-
In the IP Address field, enter the un0 subnet IP address. The IP address can be retrieved using any of the following methods:
- From the OCI console.
- Open the navigation menu and select Analytics & AI. Under Data Lake, select Big Data Service.
- Select the cluster, and then under Resources, select Nodes.
- Look for the IP address with node names ending with un0.
- Sign in to un0 node through a terminal and run
ifconfig. Look for the IP that starts with same CIDR as customer subnet.
- From the OCI console.
- In the Ports field, enter 6182 (the Ranger Admin port).
- Select Add.
- Complete steps 28-31 for additional Ranger Admin hosts (un1 or mn1 host IP).
- Go to Load Balancer Details page and copy the private IP of the load balancer.