华为技术有限公司 Huawei Technologies Co. Ltd. 密级: 使用对象: 产品名称: 内部公开 工程师、合作方、用户 F5配置指导书
F5负载均衡器配置指导书
拟制: Prepared by 审核: Reviewed by
审核: Reviewed by
批准: Granted by
林浩泓 日期:Date 何韬 日期:Date 日期:Date
日期:Date
华为技术有限公司
Huawei Technologies Co., Ltd.版权所有 侵权必究 All rights reserved
2004-2-16 2004-2-17 yyyy-mm-dd yyyy-mm-dd
F5负载均衡器配置指导书 内部公开
修订记录Revision record
日期 Date 修订版本Revision version 创建文档 初稿完成 1.00 1.01 描述Description 作者Author 2004-01-11 0.01 2004-2-16 2004-2-17 林浩泓 林浩泓 根据何韬意见,添加vlan tag、pools、virtual 林浩泓 servers、node、session persistent、monitor概念解释,勘误 根据付洪磊意见,对创建虚拟服务器添加注意事项 林浩泓 2004-12-28 1.02 2004-12-28
内部资料,请勿扩散 第2页, 共62页
F5负载均衡器配置指导书 内部公开
目 录
1
F5负载均衡器简介 ................................................................................................................. 7 1.1 1.2 1.3 2
负载均衡技术简介 ......................................................................................................... 7 F5负载均衡产品介绍 ..................................................................................................... 7 几个常用术语说明 ......................................................................................................... 8
BIG-IP配置步骤与规划准备工作 ....................................................................................... 11 2.1 2.2 2.3 2.4
BIG-IP配置步骤 ........................................................................................................... 11 准备要点 ....................................................................................................................... 11 组网和IP地址规划 ........................................................................................................ 12 BIG-IP接口编号说明 ................................................................................................... 13
3 命令行进行SETUP配置....................................................................................................... 14 3.1 3.2 3.3 3.4 3.5
配置终端 ....................................................................................................................... 14 启动F5 ........................................................................................................................... 14 输入用户名口令 ........................................................................................................... 15 设置终端类型 ............................................................................................................... 15 SETUP初始化配置 ......................................................................................................... 16
3.5.1 提示系统License不存在 ........................................................................................... 16 3.5.2 设置键盘类型 ........................................................................................................... 17 3.5.3 设置root密码 ............................................................................................................ 17 3.5.4 设置主机名 ............................................................................................................... 18 3.5.5 双机系统设置 ........................................................................................................... 19 3.5.6 设置接口速率和双工类型 ....................................................................................... 21 3.5.7 配置VLAN和IP地址 ................................................................................................. 21 3.5.8 添加接口到VLAN中 ................................................................................................. 24 3.5.9 选择VLAN IP地址与主机名关联............................................................................. 24 3.5.10
2004-12-28
配置默认网关 ....................................................................................................... 25
内部资料,请勿扩散
第3页, 共62页
F5负载均衡器配置指导书 内部公开
3.5.11 3.5.12 3.5.13 3.5.14 3.5.15 3.5.16 3.5.17 3.5.18 4
配置WEB访问 ...................................................................................................... 26 配置SSH访问 ........................................................................................................ 28 配置F5支持访问 .................................................................................................. 29 设置时区 ............................................................................................................... 30 配置NTP支持 ....................................................................................................... 31 配置DNS代理转发 ............................................................................................... 31 用户认证配置 ....................................................................................................... 31
Setup配置完成 ...................................................................................................... 32
激活LICENSE ...................................................................................................................... 33 4.1 4.2
通过WEB访问BIG-IP ................................................................................................... 33 激活LICENSE步骤 ......................................................................................................... 33
5 6
系统时钟更改 ....................................................................................................................... 37 WEB CONFIGURATION UTILITY进行配置 ................................................................. 38 6.1 6.2 6.3 6.4
进入配置工具 ............................................................................................................... 38 配置VLAN和端口 ........................................................................................................ 39 配置VLAN IP地址 ........................................................................................................ 39 配置负载均衡池 ........................................................................................................... 40
6.4.1 配置池名、成员IP地址和负载均衡策略 ............................................................... 40 6.4.2 会话保持配置 ........................................................................................................... 41 6.5
配置节点状态监控 ....................................................................................................... 42
6.5.1 自定义节点状态监控 ............................................................................................... 43 6.5.2 监控与节点相关联 ................................................................................................... 44 6.6
配置虚拟服务器 ........................................................................................................... 45
6.6.1 创建虚拟服务器 ....................................................................................................... 45 6.6.2 虚拟服务器属性修改配置 ....................................................................................... 46 6.6.3 检查系统状态 ........................................................................................................... 48 6.7
配置SNAT ..................................................................................................................... 49
6.7.1 配置步骤 ................................................................................................................... 49
2004-12-28
内部资料,请勿扩散
第4页, 共62页
F5负载均衡器配置指导书 内部公开
6.7.2 验证SNAT配置.......................................................................................................... 51 7
双机配置 ............................................................................................................................... 54 7.1 7.2 7.3 8
注意事项 ....................................................................................................................... 54 初始化后配置步骤 ....................................................................................................... 55 上行连接的监控设置 ................................................................................................... 55
附录A 常见问题说明 .......................................................................................................... 57 8.1 8.2 8.3 8.4 8.5 8.6 8.7 8.8
BIG-IP单机或两台双机系统处于STANDBY状态,为什么? .................................... 57 BIG-IP系统ROOT密码忘记了,如何恢复? ............................................................... 57 默认的用户名和口令不安全,如何添加新用户或修改现有用户? ........................ 58 BIG-IP系统如何进行配置备份和恢复? .................................................................... 59 SSH访问具有密码加密传输的优点,请问从哪里获取SSH客户端? ..................... 59 网络设备通常有收集系统信息的宏命令,F5有没有相应命令? ........................... 60 如何使用TCPDUMP进行TROUBLESHOOTING? ......................................................... 60 如何实时监视BIG-IP的连接状态? ............................................................................ 62
2004-12-28
内部资料,请勿扩散 第5页, 共62页