I have 2 ASA5520's which I need to configure in statefull failover mode.
I am using gi0/3 on both ASA's for the failover and they are directly connected to one another (not going through a switch)but cannot get them to synch.
I looked at :
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807dac5f.shtml
But was not sure which example to use.
Anyone has a sample config for statefull failover on a 5520 + steps?
On a side note, from design stand point, I would assume you would connect each firewall to one core switch internally and route to the hsrp address internall, correct? What about the outside interface, given there is only one physical port that represents the outside, do you need a switch to connect both firewalls to that single (ISP) port being the www?