lxm --- ans lb config

#ANS2.2 Build 160.006
# Last modified by `save config`, Fri Oct 12 17:15:42 2018
set ans config -IPAddress 172.16.204.30 -netmask 255.255.255.0
set ans config -timezone "GMT+08:00-CST-Asia/Shanghai"
enable ans feature WL SP LB CS CR SC CMP PQ SSL GSLB HDOSP push CF IC SSLVPN AAA OSPF RIP BGP REWRITE IPv6PT AppFw RESPONDER HTMLInjection AppFVision CloudETunnel ISIS CH AppQDE
enable ans mode FR L3 Edge USNIP PMTUD
set system parameter -natPcbForceFlushLimit 4294967295 -timeout 43200
set system user ansroot 1a6eb952949bcb4f8cecfd3dff3a4baa78191fb2392d14521 -encrypted
set rsskeytype -rsstype ASYMMETRIC
set lacp -sysPriority 32768 -mac 52:54:00:23:86:c0
set interface 0/1 -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -ifnum 0/1
set interface 1/1 -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -ifnum 1/1
set interface LO/1 -haMonitor OFF -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -intftype Loopback -ifnum LO/1
add ans ip6 fe80::5054:ff:fe23:86c0/64 -scope link-local -type ANSIP -vlan 1 -vServer DISABLED -mgmtAccess ENABLED -dynamicRouting ENABLED
add ans ip 172.16.204.31 255.255.255.0 -vServer DISABLED -mgmtAccess ENABLED
set ipsec parameter -lifetime 28800
add ipsec profile ans_ipsec_default_profile -ikeRetryInterval 60
set nd6RAvariables -vlan 1
bind nd6RAvariables -vlan 1 -ipv6Prefix ::
set ipv6 -natprefix ::
set snmp mib -contact "Admin (default)"
set snmp alarm SYNFLOOD -timeout 1
set snmp alarm HA-VERSION-MISMATCH -time 86400 -timeout 86400
set snmp alarm HA-SYNC-FAILURE -time 86400 -timeout 86400
set snmp alarm HA-NO-HEARTBEATS -time 86400 -timeout 86400
set snmp alarm HA-BAD-SECONDARY-STATE -time 86400 -timeout 86400
set snmp alarm HA-PROP-FAILURE -timeout 86400
set snmp alarm IP-CONFLICT -timeout 86400
set snmp alarm APPFW-START-URL -timeout 1
set snmp alarm APPFW-DENY-URL -timeout 1
set snmp alarm APPFW-REFERER-HEADER -timeout 1
set snmp alarm APPFW-CSRF-TAG -timeout 1
set snmp alarm APPFW-COOKIE -timeout 1
set snmp alarm APPFW-FIELD-CONSISTENCY -timeout 1
set snmp alarm APPFW-BUFFER-OVERFLOW -timeout 1
set snmp alarm APPFW-FIELD-FORMAT -timeout 1
set snmp alarm APPFW-SAFE-COMMERCE -timeout 1
set snmp alarm APPFW-SAFE-OBJECT -timeout 1
set snmp alarm APPFW-POLICY-HIT -timeout 1
set snmp alarm APPFW-VIOLATIONS-TYPE -timeout 1
set snmp alarm APPFW-XSS -timeout 1
set snmp alarm APPFW-XML-XSS -timeout 1
set snmp alarm APPFW-SQL -timeout 1
set snmp alarm APPFW-XML-SQL -timeout 1
set snmp alarm APPFW-XML-ATTACHMENT -timeout 1
set snmp alarm APPFW-XML-DOS -timeout 1
set snmp alarm APPFW-XML-VALIDATION -timeout 1
set snmp alarm APPFW-XML-WSI -timeout 1
set snmp alarm APPFW-XML-SCHEMA-COMPILE -timeout 1
set snmp alarm APPFW-XML-SOAP-FAULT -timeout 1
set snmp alarm DNSKEY-EXPIRY -timeout 1
set snmp alarm HA-LICENSE-MISMATCH -timeout 86400
set snmp alarm CLUSTER-NODE-HEALTH -time 86400 -timeout 86400
set snmp alarm CLUSTER-NODE-QUORUM -time 86400 -timeout 86400
set snmp alarm CLUSTER-VERSION-MISMATCH -time 86400 -timeout 86400
set ans tcpProfile anstcp_default_tcp_lfp -mss 0
set ans tcpProfile anstcp_default_tcp_lnp -mss 0
set ans tcpProfile anstcp_default_tcp_lan -mss 0
set ans tcpProfile anstcp_default_tcp_lfp_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_lnp_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_lan_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_interactive_stream -mss 0
set ans tcpProfile anstcp_internal_apps -mss 0
set ans tcpProfile anstcp_default_XA_XD_profile -mss 0
set ans tcpProfile anstcp_default_Mobile_profile -mss 0
add server srv_lxm_win1 172.16.204.50
add server srv_lxm_linux1 172.16.204.51
add server srv_lxm_linux2 172.16.204.52
add server srv_gxw_proxy1 172.16.204.56
add service svc_lxm_win1_portalyk srv_lxm_win1 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_montorfile srv_lxm_win1 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_login srv_lxm_win1 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_file srv_lxm_win1 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_card srv_lxm_win1 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_portalyk srv_lxm_linux1 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_montorfile srv_lxm_linux1 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_login srv_lxm_linux1 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_file srv_lxm_linux1 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_card srv_lxm_linux1 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_portalyk srv_lxm_linux2 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_montorfile srv_lxm_linux2 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_login srv_lxm_linux2 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_file srv_lxm_linux2 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_card srv_lxm_linux2 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_web_80 srv_gxw_proxy1 HTTP 80 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_file_8086 srv_gxw_proxy1 HTTP 8086 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_file_18001 srv_gxw_proxy1 TCP 18001 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add ssl certKey hg-server-certificate -cert hg-server.cert -key hg-server.key
bind cmp global ans_adv_nocmp_xml_ie -priority 8700 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_nocmp_mozilla_47 -priority 8800 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_mscss -priority 8900 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_msapp -priority 9000 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_content_type -priority 10000 -gotoPriorityExpression END -type RES_DEFAULT
set lb parameter -sessionsThreshold 150000
add lb vserver lb_vsrv_lxm_login TCP 172.16.204.45 2013 -persistenceType NONE -cltTimeout 9000
add lb vserver lb_vsrv_lxm_card TCP 172.16.204.45 2055 -persistenceType NONE -cltTimeout 9000
add lb vserver lb_vsrv_gxw_proxy_web_80 HTTP 172.16.204.45 80 -persistenceType NONE -cltTimeout 180
add lb vserver lb_vsrv_gxw_proxy_file_8086 HTTP 172.16.204.45 8086 -persistenceType NONE -cltTimeout 180
add lb vserver lb_vsrv_gxw_proxy_file_18001 TCP 172.16.204.45 18001 -persistenceType NONE -cltTimeout 9000
set cache parameter -via "NS-CACHE-10.0: 40"
set ans rpcNode 172.16.204.40 -password 8a7b474124957776a0cd31b862cbe4d72b5cbd59868a136d4bdeb56cf03b28 -encrypted -srcIP *
add rewrite action rw_act_xforward_rep replace "HTTP.REQ.HEADER(\"X-Forwarded-For\")" CLIENT.IP.SRC
add rewrite action rw_act_xforward_add insert_http_header X-FORWARDED-FOR CLIENT.IP.SRC
add rewrite policy rw_pol_xforward_rep "HTTP.REQ.HEADER(\"X-FORWARDEDFOR\").EXISTS" rw_act_xforward_rep
add rewrite policy rw_pol_xforward_add "HTTP.REQ.HEADER(\"X-FORWARDEDFOR\").EXISTS.NOT" rw_act_xforward_add
set responder param -undefAction NOOP
set appfw settings -sessionCookieName NetQQY_ns_id
bind lb vserver lb_vsrv_lxm_login svc_lxm_win1_login
bind lb vserver lb_vsrv_lxm_login svc_lxm_linux1_login
bind lb vserver lb_vsrv_lxm_login svc_lxm_linux2_login
bind lb vserver lb_vsrv_lxm_card svc_lxm_win1_card
bind lb vserver lb_vsrv_lxm_card svc_lxm_linux1_card
bind lb vserver lb_vsrv_lxm_card svc_lxm_linux2_card
bind lb vserver lb_vsrv_gxw_proxy_web_80 svc_gxw_proxy_web_80
bind lb vserver lb_vsrv_gxw_proxy_file_8086 svc_gxw_proxy_file_8086
bind lb vserver lb_vsrv_gxw_proxy_file_18001 svc_gxw_proxy_file_18001
bind lb vserver lb_vsrv_gxw_proxy_web_80 -policyName rw_pol_xforward_rep -priority 111 -gotoPriorityExpression NEXT -type REQUEST
bind lb vserver lb_vsrv_gxw_proxy_web_80 -policyName rw_pol_xforward_add -priority 115 -gotoPriorityExpression NEXT -type REQUEST
set ans diameter -identity high-galaxy.com -realm com
add dns nsRec . a.root-servers.net -TTL 3600000
add dns nsRec . b.root-servers.net -TTL 3600000
add dns nsRec . c.root-servers.net -TTL 3600000
add dns nsRec . d.root-servers.net -TTL 3600000
add dns nsRec . e.root-servers.net -TTL 3600000
add dns nsRec . f.root-servers.net -TTL 3600000
add dns nsRec . g.root-servers.net -TTL 3600000
add dns nsRec . h.root-servers.net -TTL 3600000
add dns nsRec . i.root-servers.net -TTL 3600000
add dns nsRec . j.root-servers.net -TTL 3600000
add dns nsRec . k.root-servers.net -TTL 3600000
add dns nsRec . l.root-servers.net -TTL 3600000
add dns nsRec . m.root-servers.net -TTL 3600000
add dns addRec l.root-servers.net 199.7.83.42 -TTL 3600000
add dns addRec b.root-servers.net 192.228.79.201 -TTL 3600000
add dns addRec d.root-servers.net 128.8.10.90 -TTL 3600000
add dns addRec j.root-servers.net 192.58.128.30 -TTL 3600000
add dns addRec h.root-servers.net 128.63.2.53 -TTL 3600000
add dns addRec f.root-servers.net 192.5.5.241 -TTL 3600000
add dns addRec k.root-servers.net 193.0.14.129 -TTL 3600000
add dns addRec a.root-servers.net 198.41.0.4 -TTL 3600000
add dns addRec c.root-servers.net 192.33.4.12 -TTL 3600000
add dns addRec m.root-servers.net 202.12.27.33 -TTL 3600000
add dns addRec i.root-servers.net 192.36.148.17 -TTL 3600000
add dns addRec g.root-servers.net 192.112.36.4 -TTL 3600000
add dns addRec e.root-servers.net 192.203.230.10 -TTL 3600000
set lb monitor ldns-dns LDNS-DNS -query . -queryType Address
add route 0.0.0.0 0.0.0.0 172.16.204.1
set ssl service hghttps-172.16.204.41-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-172.16.204.41-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hghttps-::1l-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-::1l-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgkrpcs-127.0.0.1-3089 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hghttps-127.0.0.1-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-127.0.0.1-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
bind ssl service hghttps-172.16.204.41-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-172.16.204.41-3088 -certkeyName hg-server-certificate
bind ssl service hghttps-::1l-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-::1l-3088 -certkeyName hg-server-certificate
bind ssl service hgkrpcs-127.0.0.1-3089 -certkeyName hg-server-certificate
bind ssl service hghttps-127.0.0.1-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-127.0.0.1-3088 -certkeyName hg-server-certificate
set ans encryptionParams -method AES256 -keyValue ff0e316156e6143adf9335f334b583950568f77bfcfa767947c0f752f0116838cb82b5552bf73107de31cf48a40e509506d112b8 -encrypted
set inatparam -nat46v6Prefix ::/96
set ip6TunnelParam -srcIP ::
set ptp -state ENABLE
set ans param -timezone "GMT+08:00-CST-Asia/Shanghai"

============== End

lxm --- ans lb config的更多相关文章

  1. BZOJ 2115 [Wc2011] Xor ——线性基

    [题目分析] 显然,一个路径走过两边是不需要计算的,所以我么找到一条1-n的路径,然后向该异或值不断异或简单环即可. 但是找出所有简单环是相当复杂的,我们只需要dfs一遍,找出所有的环路即可,因为所有 ...

  2. hdu 4897 Little Devil I

    传送阵:http://acm.hdu.edu.cn/showproblem.php?pid=4897 题目大意:一棵树,三个操作:1.将某条链取反,2.将与某条链相邻的边取反,3.查询某条链上为1的边 ...

  3. 封装定制的Kali Live ISO

    打造专属的Kali ISO – 简介 封装定制的Kali ISO很简单,很有趣,很有意义.你可以用Debian的live-build脚本对Kali ISO进行全面的配置.这些脚本以一系列配置文件的方式 ...

  4. BZOJ 1018 堵塞的交通traffic(线段树)

    题目链接:http://61.187.179.132/JudgeOnline/problem.php?id=1018 题意:一个2*n的格子,相邻格子之间有一条道路.初始时道路是不通的. 三种操作:( ...

  5. bzoj1832: [AHOI2008]聚会

    写过的题... #include<cstdio> #include<cstring> #include<iostream> #include<algorith ...

  6. bjfu1208 中位数

    题目是给你一个数x以及一个长度为n的数列,让你往数列里插入y个数,使数列的中位数正好是x,求y的最小值.(其实这题的中位数跟数学里的中位数有一点区别,略去不提) 那么就排完序以后分情况讨论一下就好了. ...

  7. SPOJ TEMPLEQ - Temple Queues(二分查找+树状数组)

    题意: 有N个队伍(1 <= N <= 100,000),每个队伍开始有ai个人[0 <= ai<= 100,000,000],有Q个操作[0<=Q<= 500,0 ...

  8. BZOJ 2821: 作诗(Poetize)( 分块 )

    分块,分成N^0.5块.O(N^1.5)预处理出sm[i][j]表示前i块中j的出现次数, ans[i][j]表示第i~j块的答案. 然后就可以O(N^0.5)回答询问了.总复杂度O((N+Q)N^0 ...

  9. AIM Tech Round 3 (Div. 2) B 数学+贪心

    http://codeforces.com/contest/709 题目大意:给一个一维的坐标轴,上面有n个点,我们刚开始在位置a,问,从a点开始走,走n-1个点所需要的最小路程. 思路:我们知道,如 ...

随机推荐

  1. 小计Tomcat的调优思路

    描述 最近在补充自己的短板,刚好整理到Tomcat调优这块,基本上面试必问,于是就花了点时间去搜集一下tomcat调优 都调了些什么,先记录一下调优手段,更多详细的原理和实现以后用到时候再来补充记录, ...

  2. google::protobuf 编译方法

    这两天用了一下Protobuf 感觉很方便, 记录一下编译过程, 以做务忘(需要安装cmake): 1: 下载地址: https://developers.google.com/protocol-bu ...

  3. Unity —— 通过鼠标点击控制物体移动

    //ClickMove - - 通过鼠标点击控制物体移动 using System.Collections; using System.Collections.Generic; using Unity ...

  4. Java线程Run和Start的区别

    先上结论:run只是Thread里面的一个普通方法,start是启动线程的方法.何以见得呢?可以执行下面的代码看看run和start的区别: package com.basic.thread; /** ...

  5. A Bug's Life(加权并查集)

    Description Background  Professor Hopper is researching the sexual behavior of a rare species of bug ...

  6. Nginx 使用札记

    nginx是什么? nginx是俄罗斯人 Igor Sysoev为俄罗斯访问量第二的Rambler.ru站点开发的一个十分轻量级的HTTP服务器.它是一个高性能的HTTP和反向代理服务器,同时也可以作 ...

  7. 第十一次作业 - Alpha 事后诸葛亮(团队)

    软工 · 第十一次作业 - Alpha 事后诸葛亮(团队) 组长本次作业链接 现代软件工程 项目Postmortem 设想和目标 1.我们的软件要解决什么问题?是否定义得很清楚?是否对典型用户和典型场 ...

  8. 结对作业_Two

    Part 1.前言 (附:本次编码涵盖的所有功能均为java语言实现) 结对项目作业 结对同学高裕翔的博客 个人github传送门 博文pdf链接 Part 2.具体分工 本次的结对作业我们简单的拆分 ...

  9. 在.net项目中使用Consul

    1.创建.net core web程序并运行 2.在Consul中注册该服务 Consul支持两种服务注册的方式,一种是通过Consul的服务注册HTTP API,由服务自身在启动后调用API注册自己 ...

  10. Windows下IntelliJ IDEA中调试Spark Standalone

    参考:http://dataknocker.github.io/2014/11/12/idea%E4%B8%8Adebug-spark-standalone/ 转载请注明来自:http://www.c ...