McAfee M4050 Troubleshooting Guide - Page 91

Installing Manager Watchdog, Using Manager Watchdog with Manager in an MDR configuration

Page 91 highlights

McAfee® Network Security Platform 6.0 Automatically restarting a failed Manager with Manager Watchdog Installing Manager Watchdog Manager Watchdog is installed automatically during Manager installation, and a new OS service called "Network Security Platform Watchdog Service" is created to enable you to start and stop the Manager Watchdog service. Caution: Manager Watchdog monitors only the "Network Security PlatformMgr" service; it does not monitor services like MySQL or Apache. Starting Manager Watchdog The Manager watchdog process is, by default, not started after installation; you must start the Manager watchdog process manually. To start/stop Manager Watchdog: 1. Select Start > Settings > Control Panel. Double-click Administrative Tools, and then double-click Services. 2. Click Network Security Platform Watchdog Service. 3. Do one of the following:  To start the service, select Action > Start.  To stop the service, select Action > Stop. Using Manager Watchdog with Manager in an MDR configuration When using Manager Watchdog on an Manager that is part of an MDR configuration, consider whether you want the Manager Watchdog to restart the Manager before failover can occur. If so, you must ensure that the value set for the MDR setting "Downtime Before Switchover" is greater than the Manager Watchdog setting of 30 seconds. This prevents the initiation of MDR, wherein the peer Manager takes over if the primary Manager fails. McAfee suggests retaining the default value of 5 minutes or greater to allow the Manager Watchdog time to restart the Manager. If the Manager Watchdog brings up a primary Manager after MDR has initiated, note that the primary Manager does not come back Active; it checks first to determine whether the secondary is Active and if so, remains as standby. Tracking Manager Watchdog activities The Manager Watchdog logs all controlled activities in a log file. Log files can be found at: // named with the filename convention wdout_.log A sample log file entry follows: 82

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95

McAfee® Network Security Platform 6.0
Automatically restarting a failed Manager with Manager Watchdog
82
Installing Manager Watchdog
Manager Watchdog is installed automatically during Manager installation, and a new OS
service called "Network Security Platform Watchdog Service" is created to enable you to
start and stop the Manager Watchdog service.
Caution:
Manager Watchdog monitors only the "Network Security PlatformMgr"
service; it does not monitor services like MySQL or Apache.
Starting Manager Watchdog
The Manager watchdog process is, by default, not started after installation; you must start
the Manager watchdog process manually.
To start/stop Manager Watchdog:
1. Select
Start > Settings > Control Panel
.
Double-click
Administrative Tools
, and then
double-click
Services
.
2. Click
Network Security Platform Watchdog Service
.
3. Do one of the following:
To start the service, select
Action > Start
.
To stop the service, select
Action > Stop.
Using Manager Watchdog with Manager in an MDR
configuration
When using Manager Watchdog on an Manager that is part of an MDR configuration,
consider whether you want the Manager Watchdog to restart the Manager before failover
can occur.
If so, you must ensure that the value set for the MDR setting "Downtime Before
Switchover" is greater than the Manager Watchdog setting of 30 seconds. This prevents
the initiation of MDR, wherein the peer Manager takes over if the primary Manager fails.
McAfee suggests retaining the default value of 5 minutes or greater to allow the Manager
Watchdog time to restart the Manager.
If the Manager Watchdog brings up a primary Manager after MDR has initiated, note that
the primary Manager does not come back Active; it checks first to determine whether the
secondary is Active and if so, remains as standby.
Tracking Manager Watchdog activities
The Manager Watchdog logs all controlled activities in a log file. Log files can be found at:
/<Network Security Platform install directory>/ named with the
filename convention wdout_<<time stamp>>.log
A sample log file entry follows: