cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
429
Views
5
Helpful
8
Replies

Load Balancing

dianewalker
Level 1
Level 1

We have two ASA5550's, ver. 7.1(2). We setup Load Balancing, using virtual cluster IP address. The primary ASA is setup with priority 10. The secondary ASA is setup with priority of 8. When the first client (VPN client) connects, the client connects to the Secondary ASA. When the second client connects, it also connects to the Secondary ASA. Is there a way to setup Active/Active? So, when the first client (VPN client) connects, it will connect to the Primary. When the second client connects, it will connect to the Secondary. When the third client connects, it will connect to the Primary and so on.

Thanks.

Diane

8 Replies 8

andrew.prince
Level 10
Level 10

Diane,

Can you confirm the failover license of the firewalls is active/active?

Can you post the output of "sh version"

Can you post the output of "show vpn load-balancing"

Thanks for your prompt response. The failover license is active/active. The requested files are attached.

Thanks.

Diane

Diane,

Can you supply the outputs from the primary/master ASA - asa1 maybe!

Can you also post the output from both devices for the command "show failover"

Thanks very much for your prompt response. Attached are the files for your information.

I put the show failover and show vpn load-balancing on the same file (primaryshbl.rtf).

Thanks.

Diane

Can;t see an issue with the config so far - can you issue on both ASA's:-

debug vpnlb 250

And post the outputs from both units please?

Thanks for your prompt response. Attached are the outputs from both units.

Thanks.

Diane

Andrew,

Thanks very much for taking time to work on this issue. I will follow these instructions.

Thanks again for everything.

Diane

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: