I want to configure on our PIX 525(PIX OS 7.x)failover. Throught serial cable and dedicated interface.
My question is:
We have IP addresses on inside, outside and DMZs. I assign on primary PIX other IP addresses (for secondary PIX).
What happens related to VPN when failover occures?
We use VPN to connect our users to our
primary IP address of PIX (on outside). And for primary PIX we have certificate issued.
I know that when we configure failover
than configuration will be replicated but we are confused about secondary IP address and maybe problems related to this. Should we allow VPN traffic throught our active devices on new IP
address as well?