Chapter 1
Configuring a Cluster of ASAs
Rebalancing New TCP Connections Across the Cluster
If the load balancing capabilities of the upstream or downstream routers result in unbalanced flow
distribution, you can configure overloaded units to redirect new TCP flows to other units. No existing
flows will be moved to other units.
ASA Features and Clustering
•
•
•
•
•
•
•
•
•
•
Unsupported Features
These features cannot be configured with clustering enabled, and the commands will be rejected.
•
•
•
•
•
•
•
Unsupported Features, page 1-17
Centralized Features, page 1-18
Features Applied to Individual Units, page 1-18
Dynamic Routing, page 1-19
NAT, page 1-21
Syslog and Netflow, page 1-22
SNMP, page 1-22
VPN, page 1-22
FTP, page 1-23
Cisco TrustSec, page 1-23
Unified Communications
Remote access VPN (SSL VPN and IPsec VPN)
The following application inspections:
–
CTIQBE
–
GTP
–
H323, H225, and RAS
–
IPsec passthrough
–
MGCP
–
MMP
–
RTSP
–
SIP
–
SCCP (Skinny)
–
WAAS
–
WCCP
Botnet Traffic Filter
Auto Update Server
DHCP client, server, relay, and proxy
VPN load balancing
Information About ASA Clustering
Cisco ASA Series CLI Configuration Guide
1-17