Load Balancing

To improve high availability and/or scalability, you can load balance Cloud Link communication using a common network appliance. While a combination of reverse proxy and load balancing is possible, the following example demonstrates a bare load balanced deployment.

In this topology, SOTI MobiControl Cloud makes requests to the load balancer, which balances the requests across multiple Cloud Link Agents. The load balancer is transparent to the SOTI MobiControl Cloud, therefore mutual authentication is formed between SOTI MobiControl Cloud and the Cloud Link Agent directly.

Note: Cloud Link communication is stateless, so the use of sticky sessions can be avoided. It is therefore important that each Cloud Link Agent have the Server Certificate that matches the load balancer's fully qualified domain name.

The following diagram illustrates the Load Balanced Cloud Link Communication deployment option.


Load Balanced Cloud Link Communication

Network Requirements

The "Load Balanced Cloud Link Communication Matrix" table represents the communication requirements for load balanced SOTI MobiControl Cloud to Cloud Link Agent communication.

Bold text indicates required communication. CLA = Cloud Link Agent

Protocol Source Port Destination Port
HTTPs SOTI MobiControl Cloud 443 Load Balancer 443
HTTPs Load Balancer 443 CLA Host 1 / 2 443
LDAPs CLA Host 1 / 2 636 AD 636
HTTPs CLA Host 1 / 2 443 ADCS 443
DCOM CLA Host 1 / 2 135 ADCS 135