02-26-2007 03:59 AM - edited 03-11-2019 02:38 AM
I have two ASA 5520 appliances running 7.0(4). I use the Management0/0 interface as a connection to the Internet as it is only 100mbps.
That leaves me four Gigabit interfaces to use with DMZ architecture.
I tried to configure active/standby failover using VLAN interfaces on one physical Gigabit interface. The documentation says this is possible and I don't want to burn a whole Gigabit physical interface just on failover -that is an expensive waste of hardware.
The failover confguration would not work despite indentical VLAN interfaces on each member.
Does anybody have any thoughts as to why sub-interfaces, running in isolated VLANs do not work with failover??
Thanks
03-02-2007 11:35 AM
This URL might help you:
http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_70/cref_txt/mr.htm#wp1535477
03-07-2007 09:56 AM
Make sure you haven't named the VLAN-interfaces!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide