发明名称 HIGH-AVAILABILITY CLUSTER ARCHITECTURE AND PROTOCOL
摘要 Methods and systems are provided for an improved cluster-based network architecture. According to one embodiment, an active connection is established between a first interface of a network device and an enabled interface of a first cluster unit of a high availability (HA) cluster. The HA cluster is configured to provide connectivity between network devices of an internal and external network. A backup connection is established between a second interface of the network device and a disabled interface of a second cluster unit. While the first cluster unit is operational and has connectivity, it receives and processes all traffic originated by the network device that is destined for the external network. Upon determining the first cluster unit has failed or has lost connectivity, then all subsequent traffic originated by the network device that is destined for the external network is directed to the second cluster unit.
申请公布号 US2017039117(A1) 申请公布日期 2017.02.09
申请号 US201514817163 申请日期 2015.08.03
申请人 FORTINET, INC. 发明人 Xie Michael;Liu Jingyu;Deng Xianfeng
分类号 G06F11/20 主分类号 G06F11/20
代理机构 代理人
主权项 1. A method comprising: establishing an active connection between a first interface of a network device within an internal network and a first interface of a first cluster unit of a high-availability (HA) cluster, wherien the first interface of the first cluster unit is in an enabled state in which traffic directed thereto is able to be received, wherein the HA cluster provides the internal network with connectivity to an external network; concurrent with the active connection, establishing a backup connection between a second interface of the network device and a first interface of a second cluster unit of the HA cluster, wherein the first interface of the second cluter unit is in a disabled state in which traffic directed thereto is not able to be received; while the first cluster unit remains in an operational state and has connectivity to the external network, receiving and processing, by the first cluster unit via the active connection, all traffic originated by the network device that is to be transmitted onto the external network; upon determining the first cluster unit is in a failed state or the first cluster unit does not have connectivity to the external network, then causing all subsequent traffic originated by the network device that is to be transmitted onto the external network to be received and processed by the second cluster unit via the backup connection by putting the first interface of the second cluster unit into the enabled state and putting the first interface of the first cluster unit into the disabled state; and wherein a switch need not be logically or physically interposed between the network device and the first and second cluster units.
地址 Sunnyvale CA US