cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
534
Views
0
Helpful
1
Replies

IDSM Module failover

arun_laksh
Level 1
Level 1

Hi Team,

We have IDSM and FWSM module installed on each Cisco switch 6500 series placed in Active/Standby mode (HSRP).

We want to perform failover testing with the below scenarios for the IDSM and FWSM module

1. How will the traffic flow if the IDSM module placed in the active switch is brought down or failed?

2. How will the traffic flow if the FWSM module placed in the active switch is brought down or failed?

3. How will the traffic flow if both FWSM and IDSM module placed in the active switch is brought down or failed?

Regards,

Arun.L

1 Reply 1

Farrukh Haroon
VIP Alumni
VIP Alumni

Regarding the FWSM, you can issue the 'no failover active' command on the Active box or 'failover active' on the Standby box to force failover.

For the IDSM, you can manipulate the spanning tree cost on the active IDSM-2 module (making it higher), so that the secondary module becomes the primary traffic path. Sometimes this automatically happens after the FWSM failover (because of SPT cost change), but this would depend on your spanning tree topology. This can be done via the intrusion-detection comand on the host switch chassis.

Please rate if helpful.

Regards

Farrukh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card