lxm --- ans lb config

#ANS2.2 Build 160.006
# Last modified by `save config`, Fri Oct 12 17:15:42 2018
set ans config -IPAddress 172.16.204.30 -netmask 255.255.255.0
set ans config -timezone "GMT+08:00-CST-Asia/Shanghai"
enable ans feature WL SP LB CS CR SC CMP PQ SSL GSLB HDOSP push CF IC SSLVPN AAA OSPF RIP BGP REWRITE IPv6PT AppFw RESPONDER HTMLInjection AppFVision CloudETunnel ISIS CH AppQDE
enable ans mode FR L3 Edge USNIP PMTUD
set system parameter -natPcbForceFlushLimit 4294967295 -timeout 43200
set system user ansroot 1a6eb952949bcb4f8cecfd3dff3a4baa78191fb2392d14521 -encrypted
set rsskeytype -rsstype ASYMMETRIC
set lacp -sysPriority 32768 -mac 52:54:00:23:86:c0
set interface 0/1 -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -ifnum 0/1
set interface 1/1 -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -ifnum 1/1
set interface LO/1 -haMonitor OFF -throughput 0 -bandwidthHigh 0 -bandwidthNormal 0 -intftype Loopback -ifnum LO/1
add ans ip6 fe80::5054:ff:fe23:86c0/64 -scope link-local -type ANSIP -vlan 1 -vServer DISABLED -mgmtAccess ENABLED -dynamicRouting ENABLED
add ans ip 172.16.204.31 255.255.255.0 -vServer DISABLED -mgmtAccess ENABLED
set ipsec parameter -lifetime 28800
add ipsec profile ans_ipsec_default_profile -ikeRetryInterval 60
set nd6RAvariables -vlan 1
bind nd6RAvariables -vlan 1 -ipv6Prefix ::
set ipv6 -natprefix ::
set snmp mib -contact "Admin (default)"
set snmp alarm SYNFLOOD -timeout 1
set snmp alarm HA-VERSION-MISMATCH -time 86400 -timeout 86400
set snmp alarm HA-SYNC-FAILURE -time 86400 -timeout 86400
set snmp alarm HA-NO-HEARTBEATS -time 86400 -timeout 86400
set snmp alarm HA-BAD-SECONDARY-STATE -time 86400 -timeout 86400
set snmp alarm HA-PROP-FAILURE -timeout 86400
set snmp alarm IP-CONFLICT -timeout 86400
set snmp alarm APPFW-START-URL -timeout 1
set snmp alarm APPFW-DENY-URL -timeout 1
set snmp alarm APPFW-REFERER-HEADER -timeout 1
set snmp alarm APPFW-CSRF-TAG -timeout 1
set snmp alarm APPFW-COOKIE -timeout 1
set snmp alarm APPFW-FIELD-CONSISTENCY -timeout 1
set snmp alarm APPFW-BUFFER-OVERFLOW -timeout 1
set snmp alarm APPFW-FIELD-FORMAT -timeout 1
set snmp alarm APPFW-SAFE-COMMERCE -timeout 1
set snmp alarm APPFW-SAFE-OBJECT -timeout 1
set snmp alarm APPFW-POLICY-HIT -timeout 1
set snmp alarm APPFW-VIOLATIONS-TYPE -timeout 1
set snmp alarm APPFW-XSS -timeout 1
set snmp alarm APPFW-XML-XSS -timeout 1
set snmp alarm APPFW-SQL -timeout 1
set snmp alarm APPFW-XML-SQL -timeout 1
set snmp alarm APPFW-XML-ATTACHMENT -timeout 1
set snmp alarm APPFW-XML-DOS -timeout 1
set snmp alarm APPFW-XML-VALIDATION -timeout 1
set snmp alarm APPFW-XML-WSI -timeout 1
set snmp alarm APPFW-XML-SCHEMA-COMPILE -timeout 1
set snmp alarm APPFW-XML-SOAP-FAULT -timeout 1
set snmp alarm DNSKEY-EXPIRY -timeout 1
set snmp alarm HA-LICENSE-MISMATCH -timeout 86400
set snmp alarm CLUSTER-NODE-HEALTH -time 86400 -timeout 86400
set snmp alarm CLUSTER-NODE-QUORUM -time 86400 -timeout 86400
set snmp alarm CLUSTER-VERSION-MISMATCH -time 86400 -timeout 86400
set ans tcpProfile anstcp_default_tcp_lfp -mss 0
set ans tcpProfile anstcp_default_tcp_lnp -mss 0
set ans tcpProfile anstcp_default_tcp_lan -mss 0
set ans tcpProfile anstcp_default_tcp_lfp_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_lnp_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_lan_thin_stream -mss 0
set ans tcpProfile anstcp_default_tcp_interactive_stream -mss 0
set ans tcpProfile anstcp_internal_apps -mss 0
set ans tcpProfile anstcp_default_XA_XD_profile -mss 0
set ans tcpProfile anstcp_default_Mobile_profile -mss 0
add server srv_lxm_win1 172.16.204.50
add server srv_lxm_linux1 172.16.204.51
add server srv_lxm_linux2 172.16.204.52
add server srv_gxw_proxy1 172.16.204.56
add service svc_lxm_win1_portalyk srv_lxm_win1 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_montorfile srv_lxm_win1 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_login srv_lxm_win1 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_file srv_lxm_win1 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_win1_card srv_lxm_win1 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_portalyk srv_lxm_linux1 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_montorfile srv_lxm_linux1 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_login srv_lxm_linux1 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_file srv_lxm_linux1 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux1_card srv_lxm_linux1 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_portalyk srv_lxm_linux2 HTTP 80 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_montorfile srv_lxm_linux2 HTTP 8086 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_login srv_lxm_linux2 TCP 2013 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_file srv_lxm_linux2 TCP 18001 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_lxm_linux2_card srv_lxm_linux2 TCP 2055 -gslb NONE -maxClient 0 -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_web_80 srv_gxw_proxy1 HTTP 80 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_file_8086 srv_gxw_proxy1 HTTP 8086 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 180 -svrTimeout 360 -CKA NO -TCPB NO -CMP NO
add service svc_gxw_proxy_file_18001 srv_gxw_proxy1 TCP 18001 -gslb NONE -maxClient 0 -healthMonitor NO -maxReq 0 -cip DISABLED -usip NO -useproxyport YES -sp OFF -cltTimeout 9000 -svrTimeout 9000 -CKA NO -TCPB NO -CMP NO
add ssl certKey hg-server-certificate -cert hg-server.cert -key hg-server.key
bind cmp global ans_adv_nocmp_xml_ie -priority 8700 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_nocmp_mozilla_47 -priority 8800 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_mscss -priority 8900 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_msapp -priority 9000 -gotoPriorityExpression END -type RES_DEFAULT
bind cmp global ans_adv_cmp_content_type -priority 10000 -gotoPriorityExpression END -type RES_DEFAULT
set lb parameter -sessionsThreshold 150000
add lb vserver lb_vsrv_lxm_login TCP 172.16.204.45 2013 -persistenceType NONE -cltTimeout 9000
add lb vserver lb_vsrv_lxm_card TCP 172.16.204.45 2055 -persistenceType NONE -cltTimeout 9000
add lb vserver lb_vsrv_gxw_proxy_web_80 HTTP 172.16.204.45 80 -persistenceType NONE -cltTimeout 180
add lb vserver lb_vsrv_gxw_proxy_file_8086 HTTP 172.16.204.45 8086 -persistenceType NONE -cltTimeout 180
add lb vserver lb_vsrv_gxw_proxy_file_18001 TCP 172.16.204.45 18001 -persistenceType NONE -cltTimeout 9000
set cache parameter -via "NS-CACHE-10.0: 40"
set ans rpcNode 172.16.204.40 -password 8a7b474124957776a0cd31b862cbe4d72b5cbd59868a136d4bdeb56cf03b28 -encrypted -srcIP *
add rewrite action rw_act_xforward_rep replace "HTTP.REQ.HEADER(\"X-Forwarded-For\")" CLIENT.IP.SRC
add rewrite action rw_act_xforward_add insert_http_header X-FORWARDED-FOR CLIENT.IP.SRC
add rewrite policy rw_pol_xforward_rep "HTTP.REQ.HEADER(\"X-FORWARDEDFOR\").EXISTS" rw_act_xforward_rep
add rewrite policy rw_pol_xforward_add "HTTP.REQ.HEADER(\"X-FORWARDEDFOR\").EXISTS.NOT" rw_act_xforward_add
set responder param -undefAction NOOP
set appfw settings -sessionCookieName NetQQY_ns_id
bind lb vserver lb_vsrv_lxm_login svc_lxm_win1_login
bind lb vserver lb_vsrv_lxm_login svc_lxm_linux1_login
bind lb vserver lb_vsrv_lxm_login svc_lxm_linux2_login
bind lb vserver lb_vsrv_lxm_card svc_lxm_win1_card
bind lb vserver lb_vsrv_lxm_card svc_lxm_linux1_card
bind lb vserver lb_vsrv_lxm_card svc_lxm_linux2_card
bind lb vserver lb_vsrv_gxw_proxy_web_80 svc_gxw_proxy_web_80
bind lb vserver lb_vsrv_gxw_proxy_file_8086 svc_gxw_proxy_file_8086
bind lb vserver lb_vsrv_gxw_proxy_file_18001 svc_gxw_proxy_file_18001
bind lb vserver lb_vsrv_gxw_proxy_web_80 -policyName rw_pol_xforward_rep -priority 111 -gotoPriorityExpression NEXT -type REQUEST
bind lb vserver lb_vsrv_gxw_proxy_web_80 -policyName rw_pol_xforward_add -priority 115 -gotoPriorityExpression NEXT -type REQUEST
set ans diameter -identity high-galaxy.com -realm com
add dns nsRec . a.root-servers.net -TTL 3600000
add dns nsRec . b.root-servers.net -TTL 3600000
add dns nsRec . c.root-servers.net -TTL 3600000
add dns nsRec . d.root-servers.net -TTL 3600000
add dns nsRec . e.root-servers.net -TTL 3600000
add dns nsRec . f.root-servers.net -TTL 3600000
add dns nsRec . g.root-servers.net -TTL 3600000
add dns nsRec . h.root-servers.net -TTL 3600000
add dns nsRec . i.root-servers.net -TTL 3600000
add dns nsRec . j.root-servers.net -TTL 3600000
add dns nsRec . k.root-servers.net -TTL 3600000
add dns nsRec . l.root-servers.net -TTL 3600000
add dns nsRec . m.root-servers.net -TTL 3600000
add dns addRec l.root-servers.net 199.7.83.42 -TTL 3600000
add dns addRec b.root-servers.net 192.228.79.201 -TTL 3600000
add dns addRec d.root-servers.net 128.8.10.90 -TTL 3600000
add dns addRec j.root-servers.net 192.58.128.30 -TTL 3600000
add dns addRec h.root-servers.net 128.63.2.53 -TTL 3600000
add dns addRec f.root-servers.net 192.5.5.241 -TTL 3600000
add dns addRec k.root-servers.net 193.0.14.129 -TTL 3600000
add dns addRec a.root-servers.net 198.41.0.4 -TTL 3600000
add dns addRec c.root-servers.net 192.33.4.12 -TTL 3600000
add dns addRec m.root-servers.net 202.12.27.33 -TTL 3600000
add dns addRec i.root-servers.net 192.36.148.17 -TTL 3600000
add dns addRec g.root-servers.net 192.112.36.4 -TTL 3600000
add dns addRec e.root-servers.net 192.203.230.10 -TTL 3600000
set lb monitor ldns-dns LDNS-DNS -query . -queryType Address
add route 0.0.0.0 0.0.0.0 172.16.204.1
set ssl service hghttps-172.16.204.41-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-172.16.204.41-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hghttps-::1l-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-::1l-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgkrpcs-127.0.0.1-3089 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hghttps-127.0.0.1-443 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
set ssl service hgrpcs-127.0.0.1-3088 -eRSA ENABLED -sessReuse DISABLED -tls11 DISABLED -tls12 DISABLED
bind ssl service hghttps-172.16.204.41-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-172.16.204.41-3088 -certkeyName hg-server-certificate
bind ssl service hghttps-::1l-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-::1l-3088 -certkeyName hg-server-certificate
bind ssl service hgkrpcs-127.0.0.1-3089 -certkeyName hg-server-certificate
bind ssl service hghttps-127.0.0.1-443 -certkeyName hg-server-certificate
bind ssl service hgrpcs-127.0.0.1-3088 -certkeyName hg-server-certificate
set ans encryptionParams -method AES256 -keyValue ff0e316156e6143adf9335f334b583950568f77bfcfa767947c0f752f0116838cb82b5552bf73107de31cf48a40e509506d112b8 -encrypted
set inatparam -nat46v6Prefix ::/96
set ip6TunnelParam -srcIP ::
set ptp -state ENABLE
set ans param -timezone "GMT+08:00-CST-Asia/Shanghai"

============== End

lxm --- ans lb config的更多相关文章

  1. BZOJ 2115 [Wc2011] Xor ——线性基

    [题目分析] 显然,一个路径走过两边是不需要计算的,所以我么找到一条1-n的路径,然后向该异或值不断异或简单环即可. 但是找出所有简单环是相当复杂的,我们只需要dfs一遍,找出所有的环路即可,因为所有 ...

  2. hdu 4897 Little Devil I

    传送阵:http://acm.hdu.edu.cn/showproblem.php?pid=4897 题目大意:一棵树,三个操作:1.将某条链取反,2.将与某条链相邻的边取反,3.查询某条链上为1的边 ...

  3. 封装定制的Kali Live ISO

    打造专属的Kali ISO – 简介 封装定制的Kali ISO很简单,很有趣,很有意义.你可以用Debian的live-build脚本对Kali ISO进行全面的配置.这些脚本以一系列配置文件的方式 ...

  4. BZOJ 1018 堵塞的交通traffic(线段树)

    题目链接:http://61.187.179.132/JudgeOnline/problem.php?id=1018 题意:一个2*n的格子,相邻格子之间有一条道路.初始时道路是不通的. 三种操作:( ...

  5. bzoj1832: [AHOI2008]聚会

    写过的题... #include<cstdio> #include<cstring> #include<iostream> #include<algorith ...

  6. bjfu1208 中位数

    题目是给你一个数x以及一个长度为n的数列,让你往数列里插入y个数,使数列的中位数正好是x,求y的最小值.(其实这题的中位数跟数学里的中位数有一点区别,略去不提) 那么就排完序以后分情况讨论一下就好了. ...

  7. SPOJ TEMPLEQ - Temple Queues(二分查找+树状数组)

    题意: 有N个队伍(1 <= N <= 100,000),每个队伍开始有ai个人[0 <= ai<= 100,000,000],有Q个操作[0<=Q<= 500,0 ...

  8. BZOJ 2821: 作诗(Poetize)( 分块 )

    分块,分成N^0.5块.O(N^1.5)预处理出sm[i][j]表示前i块中j的出现次数, ans[i][j]表示第i~j块的答案. 然后就可以O(N^0.5)回答询问了.总复杂度O((N+Q)N^0 ...

  9. AIM Tech Round 3 (Div. 2) B 数学+贪心

    http://codeforces.com/contest/709 题目大意:给一个一维的坐标轴,上面有n个点,我们刚开始在位置a,问,从a点开始走,走n-1个点所需要的最小路程. 思路:我们知道,如 ...

随机推荐

  1. 查询数据库所有表和字段及其注释(mysql)

    #查询某个库所有表 select * from information_schema.TABLES where table_schema = '数据库' #查询某个库所有表的字段 select * f ...

  2. WPF binding Tag

    使用一个控件控制另外一个控件的显示与隐藏.

  3. 强化学习读书笔记 - 12 - 资格痕迹(Eligibility Traces)

    强化学习读书笔记 - 12 - 资格痕迹(Eligibility Traces) 学习笔记: Reinforcement Learning: An Introduction, Richard S. S ...

  4. 学习HTML 第五节.简单交互 加个按钮

    学习HTML 第五节.简单交互 也许你和我一样,对页面排版的兴趣小于网页交互,那么我们就先略过一些章节,直接先学一下简单交互. 前面点击图片打开链接的网址,已经是最简单的交互方式了,复杂的方式则需要用 ...

  5. scrapy-redis+selenium+webdriver解决动态代理ip和user-agent的问题(全网唯一完整代码解决方案)

    问题描述:在爬取一些反爬机制做的比较好的网站时,经常会遇见一个问题就网站代码是通过js写的,这种就无法直接使用一般的爬虫工具爬取,这种情况一般有两种解决方案 第一种:把js代码转为html代码,然后再 ...

  6. React 初学

    React.createClass({}); getInitialState,this.setState({}); {}解读代码块,外层不要加引号,比如onChange={this.handleCha ...

  7. 感谢——Thunder团队

    团队软件的开发,已经进入第二个阶段——Beta版本了.回头看看,我们走过了很长的一段路,也经历了很多,有意见不一的争吵.有取得暂时成功时的欢欣鼓舞,我们就像一家人,就像那首歌中唱到的,“我们是一家人, ...

  8. Python:迭代器的简单理解

    一.什么是迭代器 迭代,顾名思义就是重复做一些事很多次(就现在循环中做的那样).迭代器是实现了__next__()方法的对象(这个方法在调用时不需要任何参数),它是访问可迭代序列的一种方式,通常其从序 ...

  9. 阅读笔记《我是一只IT小小鸟》

    我是一只IT小小鸟 我们在尝试新的事物的时候,总是会遇到各种各样的困难,不同的人会在碰壁不同的次数之后退出.用程序员喜欢的话来说就是,我们都在for循环,区别在于你是什么情况下break;的.有的人退 ...

  10. 转 从红帽、GitHub和Docker看开源商业模式的进阶

    从红帽.GitHub和Docker看开源商业模式的进阶 发表于2014-12-16 10:26| 7594次阅读| 来源http://stratechery.com/| 0 条评论| 作者Ben Th ...