既然是集群,首先将域控变成两台:
将AD2加入域中,服务器角色中添加AD域服务,然后将其提升为域控,选择添加到现有域。
集群嘛,多安装几台 Office Online Server,但不导入SSL证书。
在第一台上用管理员打开PowerShell部署 Office Online Server farm
New-OfficeWebAppsFarm -InternalUrl "https://officeonline1.ad.local" -ExternalUrl "https://officeonline.nju.edu.cn" -SSLOffloaded -EditingEnabled
在其它台上用管理员打开PowerShell加入 Office Online Server farm
New-OfficeWebAppsMachine -MachineToJoin "officeonline1.ad.local"
在PowerShell中查看所有节点的状态
(Get-OfficeWebAppsFarm).Machines
前端 Nginx 负载均衡卸载SSL
upstream officeonline {
ip_hash;
server 192.168.1.11:80;
server 192.168.1.12:80;
server 192.168.1.13:80;
}
map $http_upgrade $connection_upgrade {
default upgrade;
'' close;
}
server {
listen 80;
listen [::]:80;
listen 443 ssl http2;
listen [::]:443 ssl http2;
server_name officeonline.nju.edu.cn;
include ssl/nju_edu_cn.conf;
location / {
proxy_pass http://officeonline;
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection $connection_upgrade;
proxy_cache_bypass $http_upgrade;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Real-PORT $remote_port;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
}
}