Steven S. Critchfield wrote:
----- "Richard Thomas" <[email protected]> wrote:
I couldn't find an answer to this, possibly because it would be a retarded thing to do but I was just wondering...

Say you had mirrored (say hardware) RAID with two drives. Reboot the system with one drive unplugged, make some changes then reboot with the other unplugged (and the unplugged one plugged back in), make some different changes then reboot with both drives plugged back in, what is the expected outcome (or is it controller dependent).

In clustered filesystems, this is referred to as split brain. It is
why most clustered filesystems want you to have 3 machines minimum.

For clustered systems, consider 3 machines and each can talk to the other
2. If one drops off line, the 2 still able to talk can be authoritative.
The one that can not talk to any of the others knows it is the one that
is isolated and shouldn't respond to filesystem requests. When it can
reconnect it can then get updated and reconnect. If you have 2 machines,
you can not determine if the other machine is dead or the network is down
locally or remotely.

The problem you introduce that isn't covered in most failover problems
is the idea of rebooting to make the changes. If you hotswap out a drive
the machine knows the drive was removed and when it returns it knows to
rebuild. You don't have a condition of 2 drives in "current" condition
and needing the other to be rebuilt.

Most likely the solution would be to pick on to be rebuilt from and do
it at the bios level. Otherwise boot from the drive you wish to be correct
and then introduce the redundant drive after the controller has established
a authoritative drive for the mirror to rebuild against.


Yeah, hot swap avoids the ambiguity. I guess if the controller maintains any information internally, it would probably sync the newest drive to the oldest. Though it also might synchronize the second drive to the first. Though more likely it should throw an error and require the user to pick. Note that the scenario presented, both drives were already members of the array so, I guess, theoretically, neither should be regarded as more authoritative than the other.

What made me think of this was I was pondering usage of mirrors as a rollback device. Pop one drive, do potentially dangerous changes, if they go wrong, just boot off the popped drive and rebuild to the one with the bad config.

Again, hotswap should solve the issue.

Though thinking about it, removing the one drive should remove it from the array, thus the drive which is added back to the array second should be the one overwritten (Though, possibly, any drive added to the array, even the first one, should be considered "blank" but it is an option to clear or not on my controller).

I may try an experiment if I can dig out two old drives.

--
You received this message because you are subscribed to the Google Groups 
"NLUG" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to 
[email protected]
For more options, visit this group at 
http://groups.google.com/group/nlug-talk?hl=en

Reply via email to