Solved

Active/Standby configuration on WAN ip

Posted on 2008-06-18
3
660 Views
Last Modified: 2008-11-27
Hi,

I need to setup 2 Cisco ASA 5510 boxes in a Active/Standby failover mode...  My question is if I can use our WAN ips as outside IP's....  So use 3 WAN adresses for the 2 units...?
0
Comment
Question by:it-row
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 32

Expert Comment

by:harbor235
ID: 21812507


All you need is 2 outside IPs in active/standby. You will need additional addresses for the connection between them, however, this can be rfc1918 space, you need a dedicated failover interface per FW.

2 outside address per two units

harbor235 ;}
0
 

Author Comment

by:it-row
ID: 21812539
If they are configured with an static IP per device. How can they "share"  the IP my VPN sites/clients connects to ?   As I understand the standby device should start to respond on the failed device's outside IP if an error occure...
0
 
LVL 32

Accepted Solution

by:
harbor235 earned 125 total points
ID: 21813181

When a failure occurs the standby assumes the IP (and mac if configured) of the configured primary ip,

the config on the primary for a interface used in A/S looks something like this;

ip address 1.1.1.1 255.255.255.0 standby 1.1.1.254    (this is an example)

the primary has the IP of the active and standby in its config, the secondary does not get the full config just failover parameters and a IP address for the failover interface. The two firewalls talk and the config gets copied to the failover unit.

harbor235 ;}
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Concerto Cloud Services, a provider of fully managed private, public and hybrid cloud solutions, announced today it was named to the 20 Coolest Cloud Infrastructure Vendors Of The 2017 Cloud  (http://www.concertocloud.com/about/in-the-news/2017/02/0…
This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Suggested Courses

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question