[Bro] Fault tolerance

Phyltr phyltr at flavourcountry.org
Mon Oct 20 11:22:08 PDT 2014

That's ok, but what happens if the first data center becomes a crater
in the ground? The workers will still be trying to send to the
non-existent manager. Even if you have shared SSH keys from the
secondary server to push out a new config that makes it the manager,
its still a manual process and if something happens to make a data
center a crater, manually switching Bro would likely be low on the
list of priorities.

Ideally I'd like to see each worker send to two servers in tandem.

On Mon, Oct 20, 2014 at 8:29 AM, Seth Hall <seth at icir.org> wrote:
> On Oct 16, 2014, at 9:31 AM, Karl Hill <phyltr at flavourcountry.org> wrote:
>> Hello, I'm in a situation where I need to have some fault-tolerance
>> with Bro. I need Bro data in two geographically disparate sites. Since
>> I can't setup two managers I'm not sure how to go about accomplishing
>> this.
> It doesn't work to just copy the data to your secondary data center hourly?  Maybe you could explain more about what sort of fault tolerance your looking for?
>   .Seth
> --
> Seth Hall
> International Computer Science Institute
> (Bro) because everyone has a network
> http://www.bro.org/

More information about the Bro mailing list