Considerations and Limitations

This section contains information on limitations for HA cluster.

General Limitations for HA Cluster

Consider the following general limitations for HA cluster:

  • To be able to use HA cluster, you must install the Veeam Data Platform Premium License. You must apply this license to the Veeam software appliance that you plan to use as the primary node. For more details about all license types, see Veeam Data Platform Feature Comparison.
  • Before you assemble the HA cluster, make sure that both nodes have the same DNS suffixes and correct DNS addresses. Otherwise, Veeam Backup & Replication will not be able to resolve infrastructure servers on both nodes.
  • Veeam Backup & Replication does not automatically install Universal Storage API integrated systems on an HA cluster. You must install the necessary Universal Storage API integrated system plug-in on every node. For more information, see Installing and Updating Plug-ins on Linux-Based Backup Server.
  • You cannot use local repositories (the default repository located on your backup server) within the HA cluster. Before you configure an HA cluster, you must add a new backup repository to your backup infrastructure and then remove the local repository from it.

Note

Consider the following:

  • By default, configuration backups are located in the local backup repository. If you want to create configuration backups for your nodes, you must specify a different backup repository to store these backups. For more information, see Scheduling Configuration Backups.
  • If you use a scale-out backup repository, ensure that it does not use local repositories as performance extents.
  • Veeam Backup & Replication does not automatically install private fixes. You must do it manually using the Veeam Host Management console for every HA node. For more information, see Installing Private Hotfixes.

Note

We recommend that you install private fixes on both nodes, so that they have the same configuration.

  • By default, Veeam Backup & Replication does not update the configuration database automatically during the HA cluster upgrade. You can either configure automatic updates of the configuration database or update it manually on the primary node. For more information, see Installing Private Hotfixes.

Tip

You can use the Veeam Host Management console to manage each HA node individually.

  • Both HA nodes must have the same version of Veeam Backup & Replication installed.
  • You can use an already existing backup server as a primary node for your HA cluster. Do not use the backup server that you are already using as the secondary node. Otherwise, after you assemble the HA cluster, its configuration database will be deleted and replaced with the configuration database of the primary HA node.
  • Before you regenerate self-signed certificates, ensure that both cluster nodes are online and the cluster is fully functional. You will not be able to regenerate the certificates while one of the nodes is not down.
  • The events that Veeam Backup & Replication writes and sends to the syslog server do not contain events for the HA cluster reconfiguration and a failover.
  • [Veeam Backup Enterprise Manager] If a backup server is added to Enterprise Manager, you must re-add it using the cluster virtual IP address or cluster DNS name after assembling the cluster. If you do not re-add the backup server, Enterprise Manager will not be able to collect data from it after a switchover.

Kerberos Environment Limitations for HA cluster

Consider the following limitations for HA cluster with the Kerberos environment:

  • To configure an HA cluster with Kerberos, follow these steps:
  1. Join both nodes to a domain where Kerberos authentication is configured. For more information, see Managing Domain Settings.
  2. Submit the request to enable the High Availability option for both Veeam Software Appliance nodes.
  3. Create a .keytab file and import it to the Veeam Host Management web UI. For more information, see Creating Keytab File.
  4. Assemble the HA cluster.

Note

If you omit one of these steps or do not follow this order, the HA cluster may have communication issues between the primary and secondary nodes. For more information on configuring the cluster with Kerberos, see Assembling HA cluster Prerequisites.

  • If you use Kerberos authentication, you must reserve a static IP address for the cluster within the same network as the Kerberos Key Distribution Center (KDC).
  • During a failover, the Log in as current user option in the Veeam Backup & Replication web UI is not supported. You must specify credentials in plain text.
  • If you remove a node from a domain where Kerberos authentication is configured after the HA cluster is assembled, it will result in connectivity issues between the HA nodes. If you need to remove a node from a domain, first disassemble the cluster, then remove both nodes from the domain, and then recreate the cluster.

HA Cluster Network Limitations

Consider the following network limitations for HA cluster:

  • Before you assemble the HA cluster, make sure that both nodes have the same DNS suffixes and correct DNS addresses. Otherwise, Veeam Backup & Replication will not be able to resolve infrastructure servers on both nodes. Ensure that the HA cluster hostname resolves to the correct IP by both HA nodes.
  • The machines that you use as Linux-based backup servers must allow inbound and outbound traffic on the ports listed in the Ports section.
  • HA cluster does not synchronize DNS suffixes between HA nodes. You must add the suffixes for both nodes in the Veeam Host Management console.
  • You must use static IP addresses for HA nodes and for a cluster virtual IP address.
  • The hosts that you plan to use as the HA nodes must be in the same subnet.
  • After you disassemble your HA cluster, the static IP address of a cluster remains assigned to the HA primary node.
  • If you want to include the DNS name of the HA cluster in the self-signed certificate, you must regenerate this certificate after you assemble the cluster. After that, the cluster DNS name will be added to the alternative names. Ensure that both cluster nodes are online and the cluster is fully functional.
  • Ensure that the TCP protocol is opened on both primary and secondary nodes. Otherwise, Veeam Backup & Replication will not be able to send WAL logs of PostgreSQL database to the secondary node.
  • Ensure that you use only one type of IP address—either IPv4 or IPv6—for the HA cluster configuration. If you configure HA cluster with a mix of both IPv4 and IPv6 addresses, the HA cluster will not operate.

HA Cluster Configuration Database Limitations

Consider the following configuration database limitations for HA cluster:

  • HA cluster supports only PostgreSQL as a configuration database.
  • You cannot assemble an HA cluster if your Linux-based backup servers have PostgreSQL databases configured on a remote host. HA cluster supports only PostgreSQL databases configured on a local host of the HA node.
  • After you assemble the cluster, do NOT modify the PostgreSQL database configuration to host the database on a remote server.
  • By default, Veeam Backup & Replication does not update the configuration database automatically during the HA cluster upgrade. You can either configure automatic update of the configuration database or update it manually on the primary node. For more information, see Installing Private Hotfixes.
  • Veeam Backup & Replication does not support configuration restore to an HA cluster.
  • The configuration backup does not contain information about an HA cluster. You can perform a configuration restore of the HA cluster only to a standalone Veeam Backup & Replication.

HA Cluster Synchronization Limitations

Consider the following synchronization limitations for HA cluster:

  • Veeam Backup & Replication synchronizes job scripts, pre-freeze and post-thaw scripts only if they are located in the /var/lib/veeam/scripts directory. Currently, it is not possible to synchronize scripts from the different directories.
  • Veeam Backup & Replication does not synchronize Veeam appliance users between nodes of an HA cluster. If you plan to use several users to manage your HA cluster, you must create these users on each HA node. For more information on creating users, see Configuring Users.
  • Veeam Backup & Replication synchronizes only the global update configuration settings of the Veeam Updater service. If you need to set custom update configuration settings, you must set them up for each node. For more information, see Configuring Updates.
  • Veeam Backup & Replication does not synchronize the following data:
  • Data located in the /var/lib/veeamdata/veeam/IRCache/ directory.
  • Index of files and folders on the VM guest OS.
  • Backup server logs. To get the logs for the necessary node, use the Veeam Host Management Console.

HA Cluster Failover Limitations

Before you perform a failover, consider the following limitations:

HA Cluster Switchover Limitations

Before you perform a switchover, consider the following limitations:

  • [Instant Recovery to Hyper-V] Make sure you finalize the Instant Recovery session to Hyper-V before you start a switchover. During a switchover, Veeam Backup & Replication stops the Instant Recovery session. After that, the VM that Veeam Backup & Replication creates on the Hyper-V datastore and its snapshot are deleted. Once you connect to a cluster, Veeam Backup & Replication will start an Instant Recovery session again.

Disassembling HA Cluster Limitations

Before you disassemble an HA cluster, consider the following limitations:

  • By default, you cannot use the secondary node as a standalone backup server after you disassemble an HA cluster since it still contains the configuration files and certificates. To use it as a standalone backup server, you must reinstall Veeam Infrastructure Appliance.
  • If you disassemble an HA cluster, you can use the secondary node again in the same cluster.

Page updated 11/18/2025

Page content applies to build 13.0.1.180