Server farm design under 3 tier design

Hi guys,
Just wondering which is best practise?
connect server farm into distribution switches or connect directly to core switches?
Understand from different articles stated different methology but from what i see in cisco network design, server farm is always connected to the distribution switches.
What other factors to consider when connecting to distribution and when to consider when connecting to core ?
Thanks

Disclaimer
The  Author of this posting offers the information contained within this  posting without consideration and with the reader's understanding that  there's no implied or expressed suitability or fitness for any purpose.  Information provided is for informational purposes only and should not  be construed as rendering professional advice of any kind. Usage of this  posting's information is solely at reader's own risk.
Liability Disclaimer
In  no event shall Author be liable for any damages whatsoever (including,  without limitation, damages for loss of use, data or profit) arising out  of the use or inability to use the posting's information even if Author  has been advised of the possibility of such damage.
Posting
Jon, very nice reply.  Thanks for joining this thread.
This makes sense because what real value would a dedicated core provide. If traffic is routing between vlans it does this on the distro switches and the only time it routes anywhere else is to the WAN and you do not high speed core switches to do this.
Yep, in in my cited example, the 4th 6509 uses its 6708's for two off-site 10g links.
I have also done the same as Joseph and connected servers to a collapsed pair of distro/core switches primarily because of cost but also because your core/distro switches tend to have the greater throughput so it is a logical place to put them.. In addition because they are on the core/distro switches you do not have to worry about oversubscribing uplinks from a different pair of switches, although there might still be oversubscription on the core/distro switches.
Re: cost, again, yep, why buy another box?
Re: greater throughput, also again, yep, for example, note I noted 4th box is all CEF720, i.e. all fabric, vs. classic bus in user 6509s.
Re: oversubscription, and again, yep, 4th 6509's server 6748 cards are 40 Gbps to fabric, vs. gig or even 10g uplinks from a separate server switch.
Jon, one reason I enjoyed, so much, reading you've done similar for similar reasons, late last year the business unit came to me and told me they want a separate dual core to increase reliability (as call centers are considered critical).  I noted that, yes, adding a second "core" box, by adding a redundant chassis (vs. the single chassis with redundant everything else) would decrease the MTBF by about 2 hours a year for the off-site links (expensively, IMO, for those 2 hours, but as they are footing the bill, who am I to say no), but I didn't see any advantage for adding another (2nd) "core" box (vs. continuing using the existing box as a collapsed core).  Well I got overruled because you just can't share a "core" device for anything else .
Unfortunately, a case of, I think, some reading some design guides, which say "core" devices do X, and so therefore, you can never do otherwise.  Again, so very much enjoyed reading someone else not following the 3 tier model, always, literally.

Similar Messages

  • Server Farm Design Guides

    Hey guys,
    Can anyone shed any light on the "U Design" server farm building block.
    Typically, we have a server farm distribution pair of switches and the server farm access switches connect to both distribution switches in the typical "V design". Now there is the concept of the "U design" where server farm access switch one, does not connect to both switches, but connects to one distribution switch and another access switch and the other access switch in-turn connects to the other server farm distribution switch.
    Does anyone have any guidlines to this design? ie, this is only for dual attached servers?
    The reason is that I see this box shape design as having a problem, if you were to lose the etherchannel between the server farm access switches. If you lose a switch, this should be OK "IF" you have your VLANs configured correctly,
    Please could someone get back to me either saying "what the hell are you on about" or "there are guildines to this design?"
    Very kind regards,
    Ken

    I can recommend only V-shaped design as it provides great redundancy in case of almost any failures. As you said, if etherchannel fails b/w two access switches, then the Acess-switch-1 and UP to Serverfarmswitch-1 is completely isolated from the other. I believe, even for dual attached servers also, V-shape design suits best.

  • How to select multiple iphoto card design under one shipment?

    Hi All,
    I have designed 4 different invitation cards. I wonder if i can multiple select 4 of these design under one shipment, so i can save a lot of shipping cost. Please share your experiences. Thanks.
    Regards,
    Wymond

    Sorry Wymond, you cannot combine different designs in one order. You can only order exact duplicates at once.
    You may want to send feedback to Apple, that you need this option, the more feedback, the better:
    http://www.apple.com/feedback/iphoto.html
    Regards
    Léonie

  • How to join a Domain Controller Server to an two-tier (SQL Server 2012) and Sharepoint 2013 (SP2013) farm

    Hi,
    I am trying to build a 3-tier SharePoint 2013 farm.
    1. SQL Server 2012, Windows 2012 VM
    2. DC Server, Windows 2012 VM
    3. SharePoint 2013, Windows 2012 VM
    I didn't built the DC server. Someone else did. However, I created about 14 service domain user accounts for SQL Server and SharePoint install and operation.
    I was able to join the SQL Server into the SharePoint server farm using SharePoint 2013 Product Configuration Wizard.  When I start the Central Admin, and click on Servers in the Farm, I only see the SharePoint server and SQL server,
    but the DC server is not listed.  Any suggestion on what did I miss?
    Thanks
    Jean

    You cannot join the Domain Controller to your SharePoint farm.  You must instead join each server from that farm to the domain that is served up by that DC.  You will want to uninstall SharePoint and probably SQL before you do this.  If it's
    an option, I would re-provision your VMs completely and start fresh.  Once you login to a new server, join that server to the target domain like this: 
    http://www.petri.co.il/join-windows-server-2012-to-domain.htm
    You'd have to ensure that your DNS resolves to the target domain on the server being joined to the domain.  If it doesn't, you can always use HOSTS entries to overcome that in the short term.
    Once you've joined both the future SQL and SharePoint servers to the domain, you can install SQL Server and then SharePoint on their prospective servers to create your farm.
    I trust that answers your question...
    Thanks
    C
    |
    RSS |
    http://crayveon.com/blog |
    SharePoint Scripts | Twitter |
    Google+ | LinkedIn |
    Facebook | Quix Utilities for SharePoint

  • The server farm account should not be used for other services

    I have created a new SharePoint Foundation 2013 Farm. I only used the Farm Configuration Wizard to create the Search Service Application, all other aspects of the Farm was created using PowerShell.
    The SharePoint Health Analyzer is reporting the following error:
    Title: The server farm account should not be used for other services.
    Severity: 1 - Error
    Category: Security
    Explanation: DOMAIN\FARM_ACCOUNT, the account used for the SharePoint timer service and the central administration site, is highly privileged and should not be used for any other services on any machines in the server farm.  The following services were
    found to use this account: Distributed Cache Service(Windows Service)
    Remedy: Browse to
    http://centraladminsite:port/_admin/FarmCredentialManagement.aspx and change the account used for the services listed in the explanation. For more information about this rule, see "http://go.microsoft.com/fwlink/?LinkID=142685".
    Now I understand how to change the account used to run the Distributed Cache Service, but my query is what account should I use in the least privelage model? I have setup the following 6 accounts as per TechNet guidelines (Link)
    and am not sure if one of these accounts should be used or if another account is required:
    SQL Server service account
    Setup user account
    Server farm account
    SharePoint Server Search service account
    Default content access account
    Application pool identity
    After reviewing the TechNet article again, I don't fully understand the section titled "Service application accounts". Is the article advising me to create a seperate account for each row in the table? e.g. 1 account for Business Data Connectivity
    Service, a different account for "Application Discovery and Load Balancer Service", another account for "App management" and another account for "Distributed Cache", so 4 extra accounts if I choose to install all of these services
    within the Farm?
    Also, what does the article mean when it says "Plan one set of an application pool and proxy group for each service application that you plan to implement."? How do I go about doing this?
    Kevin Evans

    After reviewing the TechNet article again, I don't fully understand the section titled "Service application accounts". Is the article advising me to create a seperate account for each row in the table? e.g. 1 account for Business Data Connectivity Service,
    a different account for "Application Discovery and Load Balancer Service", another account for "App management" and another account for "Distributed Cache", so 4 extra accounts if I choose to install all of these services within the Farm?
    Inder: Yes, It is suggested to have multiple service account for each service application. This increases security and dependencyof 1 account on multiple Service applications. Like below
    SQL Server service
    Local System account (default)
    Setup user
    Member of the Administrators group on the local computer
    Server farm
    Network Service (default)
    No manual configuration is necessary.
    SharePoint Server Search Service
    By default, this account runs as the Local System account.
    If you want to crawl remote content by changing the default content access account or by using crawl rules, change this to a domain user account. If you do not change this account to a domain user account, you cannot change the default content access account
    to a domain user account or add crawl rules to crawl this content. This restriction is designed to prevent elevation of privilege for any other process running as the Local System account.
    Default Content Access
    No manual configuration is necessary if this account is only crawling local farm content. If you want to crawl remote content by using crawl rules, change this to a domain user account, and apply the requirements listed for a server farm.
    Content Access
    Same requirement as the default content access account.
    Profile import Default Access
    Same requirements as server farm.
    Excel Services Unattended Service
    Must be a domain user account.
    http://technet.microsoft.com/en-us/library/cc263445%28v=office.15%29.aspx
    Also, what does the article mean when it says "Plan one set of an application pool and proxy group for each service application that you plan to implement."? How do I go about doing this?
    Inder: Each service account has a application pool and you can plan to use same application pool for multiple
    service accounts if required. These application pool are then consumed by proxy connection
    of each service application. On service application pool, you can see all the service applications and its proxy connection.
    If this helped you resolve your issue, please mark it Answered

  • Failover between server farms

    Hi,
    I'm requesting advise on problem below :
    - I have 2 datacenter with one server farm on each DC and 5 servers behind each server farm
    - each server has 5k max connection limit on each server farm
    - I want to be able to be able to failover to one SF to another when max connection for the server farm reach 25k (that mean each of 5 servers has reached its max conn)
    Can I do that with partial-threshold ?
    in Cisco documentation it's stated : "
    Each time that a server is taken out of service (for example, using the CLI, a probe failure, or the retcode threshold is exceeded), the ACE is updated"
    Would max-conn exceed be equivalent to "out of service" ?
    thanks for any contribution
    cheers

    Hi,
    I beleive Cisco ACE platform because of H/w design will not do failover for partial-threshold when primary server farms servers reached "MAXCONN" state and partial-threshold trigger. you will observe connection drop in that condition.
    for your setup i will suggest to use simple backup server farm with no partial threshold. this work and when all the server in serverfarm are no longer usable (out of service or maxconn) back server farm will be activated.

  • Upgrade server farm advice

    We would like to upgrade our network(see before.gif) that supports our server farm(about 25 servers made). Mostly web and SQL databases.
    Currently we have 2 2811 routers running BGP. Each is connected to a different ISP; one via T1, the other via FastEthernet 100Mb.
    The routers are then connected to an unmanaged switch(100Mb). The unmanaged switch is then connected to a Checkpoint firewall.
    The firewall is then connected to a second unmanaged switch. The servers are connected to this switch.
    As you can see there is no redundency besides the edge routers.
    Most importantly we would like to add redundency, increase the speeds, use vlans to seperate the servers.
    The 6500 route is a little to expensive. We were thinking a pair of 3760 switches that will connect directly to the firewalls(see after.gif).
    Advice? Suggestions?
    Thanks,

    The after.gif is a good network design.
    Planing redudancy at edge i.e. routers is a good idea. But according to your network design you need to configure GLBP if you want to use both T1 links.
    But when comming to firewall redundancy , I think its not ok., due to checkpoint licensing costs. If you has either pix or any other low cost firewall then it would'nt have been an issue.
    Comming to switch part you can take good switch like Cisco 3750 or Cisco 3560 and perform NLB on your servers by connecting multiple ports. That will increase the speed and redundancy can also be achived.
    Hope that helps.
    Regards
    Suresh Jain

  • Server farm upgrade advice

    We would like to upgrade our network that supports our server farm(about 25 servers made). Mostly web and SQL databases.
    attatched is a diagram.
    Currently we have 2 2811 routers running BGP. Each is connected to a different ISP; one via T1, the other via FastEthernet 100Mb.
    The routers are then connected to an unmanaged switch(100Mb). The unmanaged switch is then connected to a Checkpoint firewall.
    The firewall is then connected to a second unmanaged switch. The servers are connected to this switch.
    As you can see there is no redundency besides the external routers.
    Most importantly we would like to add redundency, flatten the network using MLS, increase the speeds, use vlans to seperate the servers, get rid of the checkpoint if possible.
    Can anyone give examples of configurations and models.
    Thanks

    Example configs would be impossible as every network is different. I suggest you read some design docs.
    http://cisco.com/en/US/netsol/ns656/networking_solutions_design_guidances_list.html#anchor3

  • Logging into a specific server in a terminal server farm

    We have several terminal server farms and in each farm we have the need for 1 user to always log into a specific server in the farm.   This is due to a little piece of sortware that is required for a device that only this one user has and
    the fact the it is licensed to only one server.   The user must use that server for it to work.  I want to include this server in the farm because it seems silly to have a server for only one user.    How can I point one PC/user
    to the same server in the farm all the time?  We are using the Connection Broker and NLB which seems to work just fine for all other users. 
    Thanks

    Hi Steve,
    What operating system version are you running on your servers?  Server 2008 R2?  Server 2012?
    When you configure a RDS farm to be load-balanced by the connection broker, all servers in the unique farm are intended to have the exact same applications installed.  The idea is the RDCB can redirect users to different servers as needed to balance
    the load, and that you may take any particular server (or servers, if you have enough) offline and your farm will still work.
    Now, there are always exceptions and I understand it would be nice if you could assign a user/app to a specific server to handle a case like yours.  For example, you would understand this particular user or app would not be load-balanced or highly
    available and if the one server was down it would not work, but other users/RemoteApps would be load-balanced as usual.  This is
    not a feature of the current versions of RDS.
    To do what you want the "best way" would require writing a custom plugin for RDCB.  In your custom plugin you would specifiy the load-balancing logic.  For example, when one of the "special" users logs on, your logic would direct them to the
    correct specific server, but when a regular user logs on you would allow the normal RDCB load-balancing logic to apply.  Please see here for more information:
    Terminal Services Session Broker Plug-in reference
    http://msdn.microsoft.com/en-us/library/windows/desktop/cc644962(v=vs.85).aspx
    Besides writing a custom plugin I suggest you consider the following workarounds:
    1. Instead of running the app under RDSH, run it in a Win7/Win8 VM pool if possible.  Either a pool of identical VMs or assign each user that needs to run the app to a dedicated VM.  Downside of this is added complexity, licensing for VDI,
    and an increase in hardware resources required to run the VMs.
    2. Have the user connect to the server using /admin.  You can change the permissions so that a specific group may connect using a /admin connection, without them being administrators.  Downside of this is that some features
    of RDSH are not present when connected as an administrative RDP session, and only two Active admin sessions are permitted.
    3. If running Server 2008 R2 you could set the server so that it does not participate in load balancing and have the users that need to run this special app connect directly to the server's ip address instead of to the farm name.  Downside of this
    is that you will get more uneven load distribution, however, it may not be that bad if you are balancing your initial connections using NLB and you have all of your regular users connecting to the farm name as usual.
    4. Have a separate server in each farm (not joined to the farm) just for this one app.  If possible they could be VMs with not much resources dedicated to each.  I know this is what you did not want to do, but I mention it because an
    extra base Windows Server license, one for each farm, is likely less additional cost than licensing the special software on
    all servers.  If you can run the app in VMs then the additional hardware cost of doing it this way is reduced.
    -TP

  • What is the maximun recommended number of probes, rservers, server-farms

    Team,
    What is the maximun recommended number of probes, rservers, server-farms, class-maps, policy-maps per context on an ACE module?
    Regards,
    John...

    John,
    A practical limit on ACE module is 4k each for probes, serverfarms, class-maps & policy-maps. Rserver instances can be up to 16K. These limits represent total per system. They may exist all in a single context if desired. These numbers will vary based on specific configuration requirements.
    For more specific guidance please reach out to your account team or technical marketing engineer.
    Other resource info can be found under Cisco Application Control Engine (ACE) Troubleshooting Guide -> ACE Module Resource Limits:
    http://docwiki.cisco.com/wiki/Cisco_Application_Control_Engine_%28ACE%29_Module_Troubleshooting_Guide%2C_Release_A2%28x%29_--_ACE_Module_Resource_Limits
    DocWiki for ACE:
    http://docwiki.cisco.com/wiki/ACE
    HTH.

  • How to create a mult-server server farm?

    Hello Community
        Let's say you create your Sharepoint 2013 Server farm.
        How do you create a Search and Application Server on a separate physical
    server and how do you create an SQL Server on a Separate physical Server
    and finally adding those Search and Application Server and SQL Server
    to your Sharepoint 2013 Server farm?
        Thank you
        Shabeaut

    Hi,
    Once you are done with SharePoint installation on one server you are going to add further Application server or Web front end server as per your requirement and finally you will configure the service on your farm.
    For setting up the multitire SharePoint farm first of all you need to install the below given  prerequisites on
    one server.
    Microsoft .NET Framework 4.5
    Windows Management Framework 3.0 (CTP2)
    Application Server Role, Web Server (IIS) Role
    Microsoft SQL Server 2008 R2 SP1 Native Client
    Windows Identity Foundation (KB974405)
    Microsoft Sync Framework Runtime v1.0 SP1 (x64)
    Windows Server AppFabric
    Microsoft Identity Extensions
    Microsoft Information Protection and Control Client
    Microsoft WCF Data Services 5.0
    Cumulative Update Package 1 for Microsoft AppFabric 1.1 for Windows Server (KB2671763)
    After installing the SQL server you Just run the SharePoint product and technologies configuration wizard and follow the steps
    to add a sever to an existing farm.
    Actually as per your question you need to set up a three-tier farm configuration consists of two front-end web
    servers, an application server, and a database server. The deployment sequence and configurations that are described in this article are based on recommended best practices. While the farm configuration is not complex, it provides a fundamental infrastructure
    to implement a SharePoint 2013 solution on similar — or more complex farms.
    In this article:
    Overview
    Prepare the farm servers
    Install SharePoint 2013 on the farm servers
    Create and configure the farm
    Add web servers to the farm
    Post-installation steps
    Please feel free to reply back if you stuck somewhere or need any specific help.
    Krishana Kumar http://www.mosstechnet-kk.com
    Please mark the replies and Proposed as answer if they help and solve your issue

  • What needs to be done to rebuild a current Sharepoint 2010 Server farm to work as a Sharepoint 2013 Server farm?

    Hello Community
        Currently I have a Sharepoint 2010 Server farm.
        One server contains the database and DNS server
    because it is the the domain controller.
        The other server Contains the Sharepoint 2010 Server software
    and is the the application server where applications such as Metadata,
    UPs, etc, reside (including web applications with sites built with the UI).
        Now I am going to change to Sharepoint 2013 Server because currently
    there is no newer version of Sharepoint available.
        I am ready to rebuild the current Sharepoint 2010 farm configuration into
    a Sharepoint 2013 Server farm from scratch.
        The question  is what do needs to be added and\or changed to make the current
    Sharepoint 2010 Server farm configuration work as a Sharepoint 2013 Server farm?
        Thank you
        Shabeaut

    There is no direct in-place uprade method for SharePoint 2010 to 2013. You need to create a new SharePoint 2013 farm from scratch and attach service and content databases to upgrade them. Check out Upgrade
    to SharePoint 2013 for more information about the process.
    If you have another server, you would install SharePoint 2013 on this. If you don't, you'll need to remove SharePoint 2010 from your existing server and then install SharePoint 2013. Check out Hardware
    and software requirements for SharePoint 2013 before starting to make sure your server meets the minimum requirements for SharePoint 2013:
    Web server or application server in a three-tier farm
    Pilot, user acceptance test, or production deployment of SharePoint Server 2013 or SharePoint Foundation 2013.
    12 GB memory
    64-bit, 4 processor cores
    80 GB for system drive
    Jason Warren
    @jaspnwarren
    jasonwarren.ca
    habaneroconsulting.com/Insights

  • Designer 6i vs Designer 9i

    What is the difference between these two Designer versions. I currently have Designer 6i on a Windows 2000 machine, where I also have Oracle 9.0.1 Personal Edition. Is it possible at all to connect Designer to Personal Edition? Is it worth while to download Designer 9i?

    Eliram,
    The main difference between Designer 6i and 9i, is that you can generate 6i Forms from Designer 6i. This release supports web based and client/server forms. Using Oracle9i Designer, you generate 9i Forms for the web.
    Beyond that we are bug fixing and doing enahncements and new features for both 6i and 9i.
    Designer is not certified for Personal Edition. You should used a certified version of the Enterprise (or Standard) Edition of the Oracle Server.
    Regards
    Sue

  • IIS ARR 3.0 does not have route to server farm options.

    Hi Support,
    I have downloaded IIS AAR 3.0 and install it on Windows 2008 server.
    After that, I proceed to create server farm and added few CAS servers. 
    Then I go to URL rewrite and under Action->Action Type on the dropdown box,  I can't seem to find "Route to server farm" option.
    Can anyone help? Thanks

    Hi,
    About the IIS question please post to the IIS forum.
    IIS support forum
    http://forums.iis.net/
    Thanks for your understanding and support
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Difference between database design and schema design

    Hi i have visited so many database websites and i found so many people saying we can design a data base for you. Is schema designing and database designing is the same. so many palces i find people saying we have to design data base first in order to create a physical databse. so i am little bit confused. are they same? and also what is the difference between data model and schema?

    > the definition i found for logical data model, physical data model and the definition you
    gave for logical database design, physical database design are the same.
    Not correct. The physical design is the implemetation of the logical design. These two designs are at different levels. Also, the logical design will be the same. irrespective of the RDBMS product use.
    What is incorrect is a designer/architect designing a logical design specifically for Oracle.. or specifically for SQL-Server. A logical design has nothing to do with the RDBMS product (or h/w platforms. app servers, web severs and operating systems used).
    So the logical design will always be the same - it is RDBMS independent.
    The physical design is fully dependent on the RDBMS product used. The same logical design will be implemented as different physical designs for Oracle and for SQL-Server.

Maybe you are looking for

  • Can I sync more than one iPad with one iTunes account?

    I lost my iPad and bought another and when I sync it erased all my apps and movies from my iPad

  • Error while sending SMS

    Hi , I have done the setup for SMPP Driver properties. We have a clickatell account and registered the server IP with them. I am getting the following error while running the BPEL process to send SMS. Please help. Error while sending notification to

  • SAP Best Practice Guide for QM data pull to BI

    Hello Gurus, I am looking for SAP Best Practice Guide for Quality Mangament data modelling required for BI. That will solve my problem, to go through all the documentation before concluding to finalize the SAP Delivered Business Content objects. Need

  • Why does gmail not work in HTML anymore as it did someweeks before?

    Until several weeks ago GMAIL worked fine in HTML. Then, after a Firefox version change it worked only in the low res version. This has happened before after a version change but remedied itself after the next version change. This time it is still no

  • Fresh install stuck on internet recovery screen

    Wiped main drive and secondary drive clean for new user and fresh osx install.  Went back to main screen to start osx install and now it says error temporarily unavailable  So I shut down and now can't get past internet recovery screen and it won't r