If A Cluster Exists; Step 4: Summary And Finalizing The Cluster; If A Cluster Is Being Created; Sns-En-User_Configuration_Manual-V3 - Copyright © Stormshield - Stormshield SN series Configuration Manual

Hide thumbs Also See for SN series:
Table of Contents

Advertisement

Communication between firewalls in the high availability cluster
Encrypt
communication
between firewalls
Click on Next.

If a cluster exists

IP address of the
firewall to contact
Pre-shared key

Step 4: Summary and finalizing the cluster

If a cluster is being created

After having viewed the summary of your configurations, click on Finish. The following message
will appear:
This firewall is ready to run in high availability. You may now configure another firewall to add it to
the cluster.
Now that your cluster has been created, a new screen will appear when you attempt to access
this module.
If a cluster exists
After having viewed the summary of your configurations, click on Finish. The following message
will appear:
This firewall has to be rebooted in order to add a firewall to the cluster. Join the cluster?
To confirm the configuration, this firewall will join the cluster and synchronize the initial
configuration. It will then restart in order to apply the configuration. To access this cluster, you
need to connect to the active firewall.
This step may take a long time on entry-level models. Do not unplug the firewall.
Page 150/448
By default, communication between the firewalls is not encrypted, based on the
principle that the link used by high availability is a dedicated link.
In some architectures, the high availability link is not dedicated, and if you wish to
prevent inter-cluster communications from being read, they can be encrypted (in AES,
for example).
WARNINGS
1. Selecting this option can degrade the performance of your high availability cluster.
2. Only connections, and not their contents, pass through the high availability link.
Enter the IP address that you had defined in the wizard during the creation of the
cluster (IP address of the main or secondary link).
Enter the password/pre-shared key that you had defined in the wizard during the
creation of the cluster.
This icon
allows you to view the password in plaintext to check that it is correct.
NOTE
SNS - USER CONFIGURATION MANUAL V.3
sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
HIGH AVAILABILITY

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents