[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 504
  • Last Modified:

NSRP lite active/passive

Hi,

I am having a pair of NS25 and has configured to run NSRP lite in active/passive mode with 1 ISP connection.  Each of the untrust interface connected to the ISP through the switch.  I would like to know if configure both untrust interface the same IP is a problem with NSRP lite version?  I have set to monitor both the untrust and trust interface in the same vsd-group.

Thanks
0
jyuen1981
Asked:
jyuen1981
  • 2
2 Solutions
 
rsivanandanCommented:
For NSRP to work, anyways you need to have both interfaces with the same ip address since you have it in active/passive model right ? The config should be exactly same on both units except for the management ips.

Cheers,
Rajesh
0
 
jabiiiCommented:
I knew Rajesh with that new job would take some of my Juniper questions :) *poke Raj*
He's right :)

stuff needed in active/passive mode: meaning they share a virtual IP and each have there own manage ip
Cluster name:
VSD Group and priority
untrust interfaceces on both boxes same IP: set int ethX ip x.x.x.x/32
untrust interfaces on both boxes different management: set int ethX manage-ip x.x.x.(1 or 2)/32
a HA interface between the 2
cluster ID
0
 
rsivanandanCommented:
:-) I just got my own 5gt on my desk so that I can play around and understand the differences...

Cheers,
Rjaesh
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now