Using a load balancer in front of replicated LDAP service for Windchill
Hi
We have a 2-node clustered Windchill as well as a 2-node replicated LDAP service in a lab environment. Below is a brief on services configured.
- Site01
- Srv01 - Windchill, LDAP, HTTP
- Srv02 - Windchill, LDAP, HTTP
- Srv03 - Oracle Db
- Srv04 - CAD Worker + Main Vault
- Site02
- Srv05 - Remote File Server with Vault, HTTP and probably local Worker for Site02
Windchill service in Srv01 and Srv02 are clustered and sitting behind a F5 load balancer, working fine. LDAP service in Srv01 and Srv02 are replicated and replication works fine.
We see there are 2 ways to configure LDAP in this environment as following;
- Let LDAP services sit behind a Load Balancer like F5 BIG-IP and configure LDAP in Windchill using virtual IP given by Load Balancer. This way we can take advantage of load balancing as well as failover on LDAP services. Also, every time a new node is added, changes only need to be made on LB instead of all application nodes as well as Remote File Servers.
- Configure both LDAP servers in Windchill directly instead of going through a Load Balancer just like mentioned in https://goo.gl/sgY34r. This way we only get failover feature without load balancing of LDAP traffic. Also, any new nodes in future with LDAP service will need to be added in every application node as well as remote file servers.
Question is, which method is recommended, given the fact that an environment has got all above mentioned devices in place.
Regards,

