Step 3: Cluster's Pre-Shared Key And Data Encryption; If A Cluster Is Being Created - Stormshield SN series Configuration Manual

Hide thumbs Also See for SN series:
Table of Contents

Advertisement

Main link
Interface
Define the IP address
and network mask
Secondary link (optional)
If the firewall does not receive responses on the main link, it will attempt to connect to this
secondary link. This will prevent both firewalls from switching to active/active mode if a problem
arises on the main link.
Use a second
communication link
Interface
Define the IP address IP address for your secondary link.
In order for a link to work, both members of the cluster have to use the same interface.

Step 3: Cluster's pre-shared key and data encryption

If a cluster is being created

To secure the connection between members of the cluster, you will need to define a pre-shared
key.
This key will only be used by firewalls that are joining the cluster for the first time.
Pre-shared key
Confirm
Mandatory password
strength
Page 149/448
Main interface used for linking both firewalls that make up the
cluster.
This has to be the same interface that you had selected during the creation of the
cluster on the first firewall.
IP address and network mask dedicated to your main link. The format is expressed in
address/mask.
This address has to belong to the same sub-network as the one defined when creating
the cluster on the first firewall.
Select this option in order to enable the fields below it and to define a secondary link
for your cluster.
This option must only be selected if it was also selected during the creation of the
cluster on the first firewall.
Secondary interface used for linking both firewalls that make up the
cluster.
This has to be the same interface that you had selected during the creation of the
cluster on the first firewall.
This address has to belong to the same sub-network as the one defined when creating
the cluster on the first firewall.
NOTE
Define a password/pre-shared key for your cluster.
Confirm the password/pre-shared key that you have just entered in the previous field.
This field indicates your password's level of security: "Very Weak", "Weak", "Medium",
"Good"  or "Excellent". You are strongly advised to use uppercase letters and special
characters.
SNS - USER CONFIGURATION MANUAL V.3
sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
HIGH AVAILABILITY

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents