Outgoing traffic from appliance cluster IP

On the virtual appliance, does Checkmk have any in-built way to route outgoing traffic through the Cluster IP from both nodes?
If not, is there a way to implement something like this to avoid changing local firewalls on all currently monitored client hosts to also include the failover server IP?

Hi,
if i know correctly it should use floating IP address so you set your FW to that and it should work, but i dont have virtual-appliance so cannot be sure.

Best regards,
JF

For outgoing traffic the physical IP of the appliance is used. In a cluster you have to allow two IPs on your FW´s.

regards

Michael

3 Likes

Thank you very much. I do think a floating IP for outgoing traffic would be a helpful feature to provide, built-in, for customers making this sort of transition.

1 Like

yes, that would be a really nice feature, especially as more parts are affected than local firewalls.
You also have to consider “central” firewalling, SNMP access, checkmk agent access, etc.

1 Like

Exactly. There’s a lot that will need configuring. I’ll definitely be creating a request in the feature portal for this one. Hopefully we’ll see something before we have to go to production.

1 Like

Somebody has already posted a request for this in the feature portal. Use cluster IP address for SNMP traffic - Checkmk. There’s also a comment there with a possible implementation. Anyone have thoughts on this? Will this be able to automatically handle the failover event? I will need to look into this some more. Thanks.

This topic was automatically closed 365 days after the last reply. New replies are no longer allowed. Contact an admin if you think this should be re-opened.