Re: unable to recover from split-brain in a two-node cluster
Andrew Beekhof <[email protected]>
| Newsgroups | gmane.linux.highavailability.user |
|---|---|
| Message-ID | <[email protected]> |
On 25 Jun 2014, at 12:03 am, Lars Ellenberg <[email protected]> wrote: > On Tue, Jun 24, 2014 at 12:23:30PM +1000, Andrew Beekhof wrote: >> >> On 24 Jun 2014, at 1:52 am, [email protected] wrote: >> >>> Hi, >>> >>> I understand that initially the split-brain is caused by heartbeat messaging layer and there is nothing much can be done when packets are dropped. However, the problem is sometimes when the load is gone (or when iptables allows all traffic in my test setup), it doesn't recover. >>> >>> In the second case I provided, the heartbeat on both nodes did find each other and both were active, but pacemaker in both nodes still thinks peer is offline. I don't know if this is heartbeat's problem or Pacemaker's problem though. >> >> Do you see any messages from 'crmd' saying the node left/returned? >> If you only see the node going away, then its almost certainly a heartbeat problem. >> >> You may have better luck with a corosync based cluster, or even a newer version of pacemaker (or both! the 1.0.x codebase is quite old at this point). >> >> I was never all that happy with heartbeat's membership code, it was a near-abandoned mystery box even at the point I started Pacemaker 10 years ago. >> Corosync membership had its problems in the beginning, but personally I take comfort in the fact that its actively being worked on. >> Opinions differ, but IMHO it surpassed heartbeat for reliability 3-4 years ago. > > Possibly. But especially with nodes > "unexpectedly returning after having been declared dead", > I've still seen more problems with corosync than with heartbeat, > even within the last few years. Unfortunately a fair share of those have also been pacemaker bugs :( Yan is working on another one related to slow fencing devices. > > Anyways: > Andrew is right, you should use (recent!) corosync and recent pacemaker. > And working node level fencing aka stonith. > > That said, you said earlier you are using heartbeat 3.0.5, > and that heartbeat successfully re-established membership. > So you can confirm "ccm_testclient" on both nodes reports > the expected and same membership? > > Is that 3.0.5 release tag, or a more "recent" hg checkout? > You need heartbeat up to at least this commit: > http://hg.linux-ha.org/heartbeat-STABLE_3_0/rev/fd1b907a0de6 > > (I meant to add a 3.0.6 release tag since at least I pushed that commit, > but because of packaging inconsistencies I want to fix, > and other commitments, I deferred that much too long). > > -- > : Lars Ellenberg > : LINBIT | Your Way to High Availability > : DRBD/HA support and consulting http://www.linbit.com > > DRBD® and LINBIT® are registered trademarks of LINBIT, Austria. > _______________________________________________ > Linux-HA mailing list > [email protected] > http://lists.linux-ha.org/mailman/listinfo/linux-ha > See also: http://linux-ha.org/ReportingProblems _______________________________________________ Linux-HA mailing list [email protected] http://lists.linux-ha.org/mailman/listinfo/linux-ha See also: http://linux-ha.org/ReportingProblems
signature.asc
(application/pgp-signature, 841 B)
-----BEGIN PGP SIGNATURE----- Comment: GPGTools - http://gpgtools.org iQIcBAEBCgAGBQJTqgbaAAoJEBTzwpg4iwmN5rwQAL/MA/8iM/+VAUi6SnPzCfAs u2JbNrA9+LikLzFrQsG9ian6ZQxGNDsdo12xeSQzXHhf9fWI+UOslAwntbtLqhj2 Is6feOFOoPaUZB9/dENl11C5awNZ+85v2aBD+nud+XcvHrdHNNDhbzNuOWzUh7i2 ML4MFvJ0lGzKiYg4O+OGDI6viJVV371Woj5RUPbPjd41GbT8ZSUmDYrbwuJaLPig BsB0BmXlKVokU1KOYjvXQiCtyKxHLfB+YmUQeL1meGlSsnKXQHvfbZzf7+EPKUev Z1127xUUGohpWa7V2uHhAHffj60/cyp1YKz3gYG74CN+qkdxZcSrZMdEHzHb5N7W GiM+Px2+qsQVtqxXxn92uEo/yHz4qU2SukOT/2oH1N6AZ99XsztW5fLIQI65NVIt 6Zf4hOJLAj0UUNksblBQb1XbqdDQsR00IBgL9i3lHqlopzLaa4TgH0zwPD0TDNwI or7jxxrpnWqRPar/pz0pHdDehkcTfa1AJXv935RW8KgX46XQOD5gURNiqOt0IxEH 5Ut0eujyIgXz9DuX7ohjpsmA/pse2GNW+de27H1QNNWE2d2TPfx+AGRcCH+CSrRf BBvRVR9cUJnaM0MVDYnZjJv15B/x+yt69aOweDJ6F0uTXZPNRU+xUtYMF/GYnV3r 6u+/eUkf8fjIn1ooxIkJ =FejE -----END PGP SIGNATURE-----