Install the High Availability cluster
- Ensure that you meet the system prerequisites. See High Availability system requirements.
- Verify that all cluster nodes use the same approved NTP sources.
- Verify that time synchronization is active on all cluster nodes.
- Verify that node clocks differ by no more than 1 second.
- Collect the IP address of each of the three cluster nodes.
- Confirm that each cluster node has internet access.
- Confirm entitlement information. See Runtime entitlements.
- Decide on the administrator password thatFactoryTalk® Optix™Studio uses to connect to the cluster. Set this password during installation, in theCredentialsstep. Store the password securely.
- From Rockwell Automation Product Compatibility and Download Center (PCDC), download the FactoryTalk Optix High Availability Manager installer, the FactoryTalk Optix High Availability Package.tar.gz, the FactoryTalk Optix High Availability Package signature.tar.gz.sig, and the FactoryTalk Optix High Availability Package public key.pub. See Download Runtime Tools on the device.TIP: Always download the latest available packages from PCDC. Package version used must match the studio version number.
- Reserve one extra free IP address for the VIP on the same network segment as the cluster nodes.
- To add a new cluster, run the High Availability Manager installer on the Windows workstation, launch the application, and select+New cluster.TIP:If you close the installer before selectingInstall, you can save your progress and resume later, or discard the progress and start over.
- On theGet Startedtab, selectBrowse, specify the path to the High Availability application.tar.gzfile, accept the license agreement, and selectNext.Make sure the FactoryTalk Optix High Availability Package signature.tar.gz.sig, and the FactoryTalk Optix High Availability Package public key.pubfile are in the same folder. The manager automatically verifies the package signature when you select it, and displays a prompt if the verification succeeded or failed. You will not be able to continue until the correct files are provided.
- On theClustertab, enter the cluster information.IMPORTANT:Rockwell Automationis not responsible for any third-party software, including but not limited to its performance, security, updates, or compatibility with our products. Any use of third-party software is at your own risk, and we do not provide support, warranties, or guarantees for such software. Users should refer to the respective third-party providers for assistance and licensing terms.Cluster information fieldsFieldDescriptionCluster nameA unique name to identify the cluster.Kubernetes K3s versionThe K3s version that will be installed.Client access virtual IPThe free IP address that you reserved for the Virtual IP.TIP: When you enter an IP address, validation runs automatically. The result shows whether the address is available, in use by another cluster, or invalid.Time zoneThe time zone that the cluster uses.IMPORTANT: Changing the time zone requires a restart ofFactoryTalk OptixRuntime. A confirmation prompt displays.
- SelectNext.
- On theNodestab, for each node, enter the node information.Node information fieldsFieldDescriptionNode nameA display name, for example,Node 1. You can edit the default name.IP addressThe static IP address of the Ubuntu machine.UsernameThe sudo-enabled SSH username on that node.Password (optional)The SSH password, if you use password authentication. Leave this field blank if the node uses SSH key authentication.TIP: If a node SSH host key is not verified, theAccept Host Keysdialog displays. Select each listed node, selectAccept, and continue validation. If all nodes are already verified, this dialog does not display.If you set up SSH:
- Store the keys in the default Windows SSH location.
- Do not protect the keys by a passphrase.
- To validate connectivity, selectValidate nodes.All three nodes must pass validation before you can continue.
- On theCredentialstab, enter the administrator password.Define a password thatFactoryTalk OptixStudio will use to connect and download applications to the cluster.TIP: To change this password later, use the cluster management page in theFactoryTalk OptixHigh Availability Manager.IMPORTANT:Changing the administrator password requires a restart ofFactoryTalk OptixRuntime. A confirmation prompt displays.Use a strong, unique password or passphrase for your account. A password of at least 16 characters is recommended, using a combination of words or characters that is difficult to guess. Avoid common words, predictable patterns, personal information, and passwords used for other accounts. Longer, unique passwords or passphrases provide better protection against password guessing and brute-force attacks.
- On thePortstab, review the preconfigured ports, and change any settings as needed.Preconfigured portsPort nameDefault portPurposeWeb presentation engine (http)80Web browser client connections over HTTP.IMPORTANT: The Web presentation engine port must match theWebPresentationEngineport configured in yourFactoryTalk Optixproject. If you change this port, update your project settings to match.Web presentation engine (https)443Web browser client connections over HTTPS.IMPORTANT: The Web presentation engine port must match theWebPresentationEngineport configured in yourFactoryTalk Optixproject. If you change this port, update your project settings to match.OPC UA server (opcua)59100OPC UA client connections.MQTT broker (mqtt)8883MQTT client connections.You can edit any preconfigured port, or add a port for another service. SelectAdd port. You can only delete ports that you add. You cannot delete preconfigured ports.IMPORTANT: Adding, editing, or deleting a port requires a restart ofFactoryTalk OptixRuntime. A confirmation prompt displays.TIP: You can also add or change ports later, on an installed cluster by selecting theadd/edit portbutton.
- To install the cluster, selectInstall.IMPORTANT: If you cancel during installation, the manager does not return the cluster to its original state. The cluster can remain partially installed.An installation progress dialog displays while the manager configures K3s and all High Availability services on all three nodes. This takes several minutes.
- To activate an entitlement, in the High Availability Manager selectManage Entitlements.TheManage Entitlementswindow displays the installed entitlements.TIP: To upgrade entitlements, you must use the Entitlement Manager.
- UnderActivate a new entitlement, selectOfflineorOnline, and selectNext.
- For an offline activation, selectOffline.TIP: Go to the export step or the install step, depending on whether you need to generate a request or install an activated file.
- For an online activation, selectOnline.
- If you selectedOnline:
- On theEnter Entitlement Keystab, enter the base entitlement key and the extended entitlement key, if available.If you only have a base key, you can add an extended key later.IMPORTANT: Double-check that you entered the correct keys.The confirmation dialog warns thatFactoryTalk OptixRuntime restarts.
- SelectActivate.
- At the restart confirmation, selectSave.
- If you selectedOfflineand need an activation request:
- On theExport or installtab, selectExport an entitlement Activation Request to a file.
- On the next page, enter the entitlement key, select an export folder, and continue.The manager creates a.reqfile.
- Activate the.reqfile in Entitlement Manager on a device with internet access.Entitlement Manager creates an activated.entfile.
- If you selectedOfflineand already have an activated entitlement file:
- On theExport or installtab, selectInstall an already activated entitlement file.
- Browse to the activated.entfile, selectInstall, and at the restart confirmation selectSave.TIP: A message confirms "Activated entitlement file. Verify in Entitlement Manager." If the file is invalid, an error message reports "Error importing entitlement file", and the manager does not delete the file.If the file is valid, the manager installs the entitlement, and deletes the file from disk.
- To rehost an entitlement, inManage Entitlementsselect the entitlement, selectRehost, and selectYes.IMPORTANT: Rehosting restartsFactoryTalk OptixRuntime and removes the entitlement from this cluster.
- If you activated the entitlement online, the manager releases the entitlement and removes it from the cluster immediately.
- If you activated the entitlement offline, select an export folder when prompted. The manager generates a rehost request file there, and removes the entitlement from theInstalled entitlementslist. Complete the rehost in Entitlement Manager on a device with internet access.
- To export diagnostics, on the cluster dashboard selectExport diagnostics.
- In theSelect Export Folderdialog, select a destination folder.
- SelectSelect Folder.The manager collects diagnostics for all nodes in the cluster and saves the diagnostics to the selected folder.
Provide Feedback