Cisco ASA Series Cli Configuration Manual page 396

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Configuring Active/Active Failover
Valid values for num range from 1 to 32. You need to enter the command for each interface that
participates in the asymmetric routing group. You can view the number of ASR packets transmitted,
received, or dropped by an interface using the show interface detail command. You can have more than
one ASR group configured on the ASA, but only one per interface. Only members of the same ASR
group are checked for session information.
Example
Figure 1-1
Figure 1-1
The two units have the following configuration (configurations show only the relevant commands). The
device labeled SecAppA in the diagram is the primary unit in the failover pair.
Example 1-1
hostname primary
interface GigabitEthernet0/1
description LAN/STATE Failover Interface
interface GigabitEthernet0/2
no shutdown
interface GigabitEthernet0/3
no shutdown
interface GigabitEthernet0/4
no shutdown
interface GigabitEthernet0/5
no shutdown
failover
Cisco ASA Series CLI Configuration Guide
1-20
shows an example of using the asr-group command for asymmetric routing support.
ASR Example
ISP A
192.168.1.1
192.168.2.1
SecAppA
Failover/State link
Outbound Traffic
Return Traffic
Primary Unit System Configuration
ISP B
192.168.2.2
192.168.1.2
Inside
network
Chapter 1
Configuring Active/Active Failover
SecAppB

Advertisement

Table of Contents
loading

Table of Contents