Hi!
I'm just planning the integration of a CP-VA-500 as a Standby-Publisher which should add redundancy to an existing CP-HW-500 (v6.6.5) in a small environment (both are L2 connected).
Auto-promote from a Standby Subscriber to an Active Publisher would be enough 'high-availability' in case the primary Publisher fails.
I'm using the CPPM for Radius, Tacacs, ClearPass Guest with self-registration, Onboarding (BYOD) and do have a public wildcard certificate for Guest Authentication in place.
After studying the Tech Note: ClearPass Clustering Design Guidelines v1.2 (which is an excellent source) there are still some questions left.
Questions:
- Can I migrate the IP of the publisher to be the VIP?
- What is the best practise to do this?
- I'm using both the Data and the Management interface:
Which Interface/Network will become the VIP?
NADs are talking to the Management Port in the moment.
Guest and BYOD authentication traffic goes to the Data Port.
- What is the real benefit of configuring a VIP?
- Will I loose anything when the "auto-promoted" former Subscriber becomes the Active Publisher?
Thank you in advance for your hints and ideas.
With kind regards
Manfred