Configuring Failover; Configuring The Primary Module - Cisco Catalyst 6500 Series Configuration Manual

Catalyst 6500 series switch and cisco 7600 series router firewall services
Hide thumbs Also See for Catalyst 6500 Series:
Table of Contents

Advertisement

Chapter 15
Using Failover

Configuring Failover

This section describes how to configure failover and includes the following topics:

Configuring the Primary Module

Follow these steps to configure the primary module. For multiple context mode, all steps are performed
in the system execution space unless otherwise noted.
At any time during the procedure, you can enter the show failover command to see the failover status.
Note
See the
To configure the VLAN interface you are using for the failover link, enter the following command. For
Step 1
multiple context mode, enter this command in the system execution space:
primary(config)# failover lan interface interface_name vlan vlan
Note this setting because this command is the same on the secondary module.
This VLAN should not be used for any other purpose (except, optionally, the state link) or be assigned
to any switch ports. This VLAN does need to be assigned to the FWSM by the switch.
Do not assign an ACL to this interface; failover traffic is allowed automatically, and other traffic is
denied.
To set the IP address of the failover interface, enter the following command:
Step 2
primary(config)# failover interface ip failover_interface ip_address mask standby
ip_address
The standby IP address must be in the same subnet as the active IP address. You do not need to identify
the standby address subnet mask.
Note this setting because this command is the same on the secondary module.
The failover link IP address and MAC address do not change at failover. The active IP address always
stays with the primary module, while the standby IP address stays with the secondary module.
(Stateful failover only) To configure the VLAN interface you are using for the state link, enter the
Step 3
following command:
primary(config)# failover link interface_name [vlan vlan ]
This VLAN should not be used for any other purpose (except, optionally, the failover link) or be assigned
to any switch ports. This VLAN does need to be assigned to the FWSM by the switch.
If the interface is the same as the failover interface, you do not need to identify the VLAN.
Do not assign an ACL to this interface; failover traffic is allowed automatically, and other traffic is
denied.
(Stateful failover only) To set the IP address of the state interface, enter the following command:
Step 4
primary(config)# failover interface ip state_interface ip_address mask standby ip_address
OL-6392-01
Configuring the Primary Module, page 15-15
Configuring the Secondary Module, page 15-18
"Using the Show Failover Command" section on page 15-19
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide
Configuring Failover
section for detailed information.
15-15

Advertisement

Table of Contents
loading

This manual is also suitable for:

7600 series

Table of Contents