High Availability Failover and Automatic Recovery - AWS CloudHSM Classic

This is the user guide for AWS CloudHSM Classic. For the latest version, see the AWS CloudHSM User Guide.

High Availability Failover and Automatic Recovery

The following instructions use the configurator and vtl applications, which are part of the Luna SA client tools. The location of these applications varies depending on the client operating system. You either need to include this path in the command, or add it to the PATH environment variable.

Linux

/usr/safenet/lunaclient/bin/

Windows

%ProgramFiles%\SafeNet\LunaClient\bin\

Configuring High Availability Failover

AWS and SafeNet recommend keeping the default 20-second failover timeout. This is configurable by executing the following command:

>configurator setValue -s "LunaSA Client" -e ReceiveTimeout -v <milliseconds>

Enabling Automatic Recovery

Automatic recovery (autoRecovery) is disabled by default.

To enable autoRecovery

  • To enable autoRecovery, execute the following command:

    >vtl haAdmin -autoRecovery -retry <count>

Configuring the Retry Interval

To configure the retry interval

  • To configure the retry interval, execute the following command:

    >vtl haAdmin -autoRecovery -interval <seconds>