- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Primary instance is lost do to DC down.
We are going to be doing a DR exercise, below is the RSA AM design
DC1
Primary Instance, Replica
DC2
2 Replicas
Exercise - DC1 will be disconnected
Questions...
1. Should I promote one of the Replicas before DR starts?
2. What is the process to get the original Primary instance back into DC1 after DR exercise?
Cheers
Dana Burton
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
No need to promote any of the DR replicas during the failover exercise if all applications protected by SecurID Access are pointing to the DR Authentication Manager servers as the external authentication server, as all authentication request will be redirected automatically to the DR AM servers.
However if you would like to administer the authentication manager during the DR exercise for sure you need to promote one of the replicas deployed at the DR to be the primary one , which then you can revert back everything as it was once you complete the failover exercise.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
So how do you fail back to original Primary? Just promote it?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Exactly, you can simply promote back the original primary authentication manager deployed at the main site after finalizing the DR fail-over activity.
Keep in mind to use the promotion for maintenance way and not for disaster recovery.
Below is a useful link for that.
