FWSM - Failover

Unanswered Question
Feb 2nd, 2007

Hello,

An existential question:

Why the FWSM doesn't support hsrp or vrrp ?

Is it possible to see something like that in the future ?

In a robust solution, 2 routers in front of the blade (in multi-mode) with 2 routers behind the blade need to peer BGP between each other. Right now, they will go through the same firewall (next up) to establish the connection ...

- dan

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
vkapoor5 Fri, 02/09/2007 - 06:23

A problem with static routes is that no inherent mechanism exists to determine if the route is up or down. The route remains in the routing table even if the next hop gateway becomes unavailable. Static routes are removed from the routing table only if the associated interface on the security appliance goes down. In order to solve this problem, a static route tracking feature is used to track the availability of a static route and, if that route fails, remove it from the routing table and replace it with a backup route.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00806e880b.shtml

Actions

This Discussion