VMware Workspace ONE Community
JanKulir
Contributor
Contributor

AWCM not working correctly in Load-Balanced scenario

Hello

we have changed our UEM on-premises environment from:

  • single instance DS/AWCM (device services + AWCM) server
  • single instance AC (AirWatch Console) server
  • single instance CC (Cloud Connector) server

 

to having load-balanced 5x DS/AWCM, 5x AC but still only 1x CC

CC is now being pointed to the load-balancer  before DS/AWCM servers

DS and AC seem to be working fine, but AWCM function is always only active on 1 DS/AWCM node, which means any queries to authenticate Active Directory users will fail four times out of five.

It does not seem the load-balanced server are able to share Cloud Connector facilitated authentication service

 

What is the correct way to fix this issue.

Do we - for example:

  1. need as many CC servers as we have AWCM servers, each CC being directly pointed to partilucar AWCM, instead of Load Balancer?
  2. or just have as many CC servers as we have AWCM servers, but pointed to LB before AWCMS?
  3. or is there some other trick to it?

 

Because VMWare support was telling us, that we can have just one CC pointed to LB before AWCM nodes, but that is clearly not working right, with only one AWCM at time being able to process auths.

 

appreciate any help from ppl having experience with load-balanced on-prem scenarios

Reply
0 Kudos
2 Replies
TimHardy
Enthusiast
Enthusiast

Hi, i can confirm Multiple Active Active AWCMs behind a LB should work, we hosted and managed an on prem deployment with this configuration for a number of years.

The only difference in our setup was the AWCM's and DS's were not hosted on the same instance. Our setup was

2 X console 

2 x AWCM

5 x DS

This is the KB we used for the persistence rules for AWCM specifically

https://kb.vmware.com/s/article/2960904?lang=en_US

Hopefully this helps

Reply
0 Kudos
JanKulir
Contributor
Contributor

Thank you for reply

did you also have Cloud Connector pointed on the load-balancer of AWCM servers ?

(and if so, was it 1 CC or 2 ?)

We specifically have problem with the CC attaching itself only to one AWCM and leaving others without this function.

Reply
0 Kudos