How do I use a load balancer in front of my IPA servers?
Issue
I have an issue with using a load balancer in front of 2 IPA multi-master replica servers, which seems to be because of the SSL certificate CN not matching the host name (virtual name for load balancer). As an alternative, I can use the failover configuration in sssd.conf as well as krb5.conf (i.e. - provide a comma-delimited list of servers), however this does not perform load balancing.
Environment
- Red Hat Enterprise Linux 6
- Red Hat Enterprise Linux 7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.