if I've understood the manual correctly, for HA/LB not just two but at least three appliances (better 4+) are required (please correct me if I'm wrong):
I consider it very ineffective.
With just two appliances are two variants possible, it doesn't make sense:
For those who have just two sandbox appliances, what is your setup? How you split the traffic, implement LB and HA?
BTW, the MWG MATD configuration accepts several ATD URLs, what if I configure both ATDs and implement some logic that only one appliance process the sample? How to consolidate allowlist, blocklist and reports?
I've considered putting two ATDs behind an external load balancer and apply API for allowlist, blocklist and reports, but then I found out that API can be used for checking only and only single hash value can be verified at a time.
Solved! Go to Solution.
Hi fw_mon
In a cluster environment the Primary also scans samples, so the logic is as follow
For the half part of your question i would advise to submit the question to MWG support community.
Hope this helps.
Hi fw_mon
In a cluster environment the Primary also scans samples, so the logic is as follow
For the half part of your question i would advise to submit the question to MWG support community.
Hope this helps.
thank you @hsadi for the explanation!
The description of the clustering in the product guide is very vague and need some rework.
Hi fw_mon,
I will discuss this with engineering so they can enhance the quality of the product guide.
Best regards,
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.
Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership: