
10-9
Cisco PIX Firewall and VPN
78-15033-01
Chapter 10 Using PIX Firewall Failover
Configuring Cable-Based Failover
Step 2 If an interface is not going to be used, turn off the interface by entering:
primary(config)# interface hardware_id shutdown
Where hardware_id is ethernetn or gb-ethernetn.
This step prevents the firewall from expecting hello packets on the interface.
Step 3 Use the following Ethernet settings for your interfaces:
• (Stateful Failover) For the state link for Stateful Failover:
primary(config)# interface hardware_id {100full | 1000full}
Note The maximum transmission unit (MTU) size must be 1500 (the default) or larger on the state
link. Use the mtu command if necessary.
• For all other Ethernet interfaces:
Any setting except the auto or the 1000auto options. Auto detection is not always reliable, and
PDM enforces this setting.
To view interface commands in your configuration, use the write terminal command. Reenter an
interface with new information to correct a command you wish to change.
Step 4 Take note of the IP addresses you configured on your interfaces using the ip address command.
These IP addresses are used by the active unit, but you should take note of them, because the failover
IP
addresses used on the standby unit must be on the same subnet.
Configuring Cable-Based Failover
Follow these steps to configure failover using the serial failover cable as the failover link. The commands
in this task apply to the primary unit. Steps related only to Stateful Failover are specified by
“(Stateful
Failover).”
Note At any time during the procedure, you can enter the show failover command to see the failover status.
See the “Using the Show Failover Command” section for detailed information.
Step/Command Description
Step 1
Connect the failover cable to the
PIX
Firewall units.
Ensure that the end of the cable marked “Primary” attaches to the
unit you want to use as the primary unit and that the end marked
“Secondary” connects to the unit you want to use as the secondary
unit.
Comentarios a estos manuales