Solved

Nokia IP260 High Availablity

Posted on 2007-03-26
2
831 Views
Last Modified: 2013-11-16
I have got the job of setting up two Nokia IP260s in a high availability (either active-passive or active-active), my main experience is with Checkpoint only (on SPLAT/Windows). I have looked through some docs on setting up IPSO for HA but it's not that clear. I want someone with experience of doing this to do write a description of the process of setting this up (the easiest and simplest way possible to achieve HA and get CP up and running). Also:

Am I right in thinking IPSO is solely responsible for the HA? and that the only config CP needs is to allow multicast between the devices?

Whats the process of installing CP on them?

Can the connections between the devices be a crossover cable?  (the sync network)

thanks in advance
0
Comment
Question by:ma77smith
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 8

Expert Comment

by:charan_jeetsingh
ID: 18813380
Ur second Q first (Am I right in thinking IPSO is solely responsible for the HA? and that the only config CP needs is to allow multicast between the devices? ) : NO, The Chekpoint has to be configured simultaneously for making a complete fully functional Cluster.

Q : Whats the process of installing CP on them? : get the CP_ipso package. Upload it on the flash through nokia voyager and install it from there. :).. also check for the latest hotfixes for that version.

Q : Can the connections between the devices be a crossover cable?  (the sync network)  ---> i will say avoid that. It will work but i dont know the reason why somtimes this way cluster goes out of sync and starts misbehaving.

Regarding your first Q : where are u getting confused? its a bit lengthy and i am very lazy to type so i will focus on where exactly u are getting stuck....
0
 
LVL 4

Accepted Solution

by:
nstand earned 500 total points
ID: 18849885
You have a couple of choices, either setup Clustering using ClusterXL or my recommendation would be to setup simple active-passive failover using VRRP on the Nokia IPSO boxes. This method just requires a standard install of CheckPoint on the IPSO platform (no ClusterXL required). Once you have 2 IP platforms running IPSO then you setup and configure VRRP (monitored circuits rather than VRRPv2). You will need a sync network/cable which you dont include in the VRRP setup. Read the IPSO documentation on VRRP setup, its very good and straight forward.
0

Featured Post

Optimize your web performance

What's in the eBook?
- Full list of reasons for poor performance
- Ultimate measures to speed things up
- Primary web monitoring types
- KPIs you should be monitoring in order to increase your ROI

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
Suggested Courses

628 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question