5.13.2. Fencing Master Replicators

In the event of a master replicator failure, the fencing operation places the datasource into the FAILED state, triggering an automatic failover (see Section 5.5.1, “Automatic Master Switch”. Because this triggers a failover in the event of fencing the replicator, the configuration should only be enabled if it critical for your business that replication errors/stops should trigger a significant operation as failover.

To enable fencing of the master node due to replication faults, use the policy.fence.masterReplicator configuration property when configuring the cluster:

shell> tpm update alpha --property=policy.fence.masterReplicator=true

The delay before the fencing operation takes place can be configured using the policy.fence.masterReplicator.threshold property. The default value is 3, or 30 seconds.

shell> tpm update alpha --property=policy.fence.masterReplicator.threshold=6

When the replicator is identified as available, the master datasource is not placed back into the online state. Instead, the failed datasource and must be explicitly recovered using the recover or datasource host recover commands.