Fortinet FortiGate FortiGate-5001FA2 Installation Manual page 33

Fortigate 5000 series
Hide thumbs Also See for FortiGate FortiGate-5001FA2:
Table of Contents

Advertisement

Configuring the FortiGate for the Network
FortiGate-5000 series Installation Guide
Table 5: High availability settings
Active-Active
Mode
Active-Passive Failover HA. The primary FortiGate-5000 module in the
You must set all members of the HA cluster to the same HA mode.
The group ID range is from 0 to 63. All members of the HA cluster must have
the same group ID.
When the FortiGate-5000 modules in the cluster are switched to HA mode,
all of the interfaces of all of the units in the cluster get the same virtual MAC
address. This virtual MAC address is set according to the group ID.
Group ID
0
1
Group ID
2
3
...
63
If you have more than one HA cluster on the same network, each cluster
should have a different group ID. If two clusters on the same network have
same group ID, the duplicate MAC addresses cause addressing conflicts on
the network.
The FortiGate-5000 module with the highest priority becomes the primary
module in the cluster. The unit priority range is 0 to 255. The default unit
priority is 128.
Set the module priority to a higher value if you want a FortiGate-5000
Unit priority
module to be the primary cluster module. Set the module priority to a lower
value if you want a FortiGate-5000 module to be a subordinate module in the
cluster. If all modules have the same priority, the FortiGate-5000 module
with the highest serial number becomes the primary cluster module.
Override
You can configure a FortiGate-5001SX module to always become the
primary module in the cluster by giving it a high priority and by selecting
Master
Override master.
01-28011-0259-20060210
Load balancing and failover HA. Each FortiGate-5000
module in the HA cluster actively processes connections
and monitors the status of the other FortiGate-5000
modules in the cluster. The primary FortiGate-5000 module
in the cluster controls load balancing.
cluster processes all connections. All other FortiGate-5000
modules in the cluster are passively monitor the cluster
status and remain synchronized with the primary FortiGate-
5000 module.
MAC Address
00-09-0f-06-ff-00
00-09-0f-06-ff-01
00-09-0f-06-ff-02
00-09-0f-06-ff-03
00-09-0f-06-ff-3f
High availability installation
33

Advertisement

Table of Contents
loading

Table of Contents