Primary server:
Secondary server:
Source: https://kb.isc.org/article/AA-00502/31
failover peer "failover-partner" {
primary;
address dhcp-primary.example.com;
port 519;
peer address dhcp-secondary.example.com;
peer port 520;
max‐response‐delay 60;
max‐unacked‐updates 10;
mclt 3600;
split 128;
load balance max seconds 3;
}
Secondary server:
failover peer "failover-partner" {
secondary;
address dhcp-secondary.example.com;
port 520;
peer address dhcp-primary.example.com;
peer port 519;
max‐response‐delay 60;
max‐unacked‐updates 10;
load balance max seconds 3;
}
Both servers:
omapi-port 7911;
omapi-key omapi_key;
key omapi_key {
algorithm hmac-md5;
secret Ofakekeyfakekeyfakekey==;
}
subnet 10.100.100.0 netmask 255.255.255.0 {
option domain-name-servers 10.0.0.53;
option routers 10.100.100.1;
pool {
failover peer "failover-partner";
range 10.100.100.20 10.100.100.254;
}
}
Key generation:
dnssec‐keygen ‐a HMAC‐MD5 ‐b 512 ‐n USER DHCP_OMAPI
Source: https://kb.isc.org/article/AA-00502/31