Example 7: Cable-Based Active/Standby Failover (Routed Mode) - Cisco FirePOWER ASA 5500 series Configuration Manual

Security appliance command line
Hide thumbs Also See for FirePOWER ASA 5500 series:
Table of Contents

Advertisement

Example 7: Cable-Based Active/Standby Failover (Routed Mode)

access-group outacl in interface outside
route outside 0.0.0.0 0.0.0.0 16.142.10.1 1
Example 7: Cable-Based Active/Standby Failover (Routed Mode)
Figure B-6
configuration is only available on the PIX security appliance.
Figure B-6
Primary Unit
209.165.201.1
PAT: 209.165.201.3
The following are the typical commands in a cable-based failover configuration.
enable password myenablepassword
passwd mypassword
hostname pixfirewall
asdm image flash:/asdm.bin
boot system flash:/image.bin
interface Ethernet0
nameif outside
security-level 0
speed 100
duplex full
ip address 209.165.201.1 255.255.255.224 standby 209.165.201.2
no shutdown
interface Ethernet1
nameif inside
security-level 100
speed 100
duplex full
ip address 192.168.2.1 255.255.255.0 standby 192.168.2.2
no shutdown
Cisco Security Appliance Command Line Configuration Guide
B-20
shows the network diagram for a failover configuration using a serial Failover cable. This
Cable-Based Failover Configuration
outside
192.168.253.1
192.168.2.1
inside
Internet
209.165.201.4
Switch
Serial Failover Cable
192.168.253.2
state
Switch
Web Server
192.168.2.5
Static: 209.165.201.5
Appendix B
Sample Configurations
Secondary Unit
209.165.201.2
192.168.2.2
OL-10088-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pix 500 seriesCisco asa 5500 series

Table of Contents