cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1025
Views
0
Helpful
9
Replies

CAS-HA Configuration in L2 OOB Virtual Gateway

mohammed-amjad
Level 1
Level 1

Hi,

I have configured the Clean Access Manager and Server in L2 OOB Virtual Gateway Mode and i have configured the HA of CAM but i am facing problem while configuring CAS High Availability because i am using in the CAS of trusted interface and untrusted interface same IP address so can u please tell me How to configure High Availability of CAS in L2 OOB Virtual Gateway with same IP Address of trusted and untrusted interface.

Thanks,

9 Replies 9

Faisal Sehbai
Level 7
Level 7

Dear Faisal,

Thanks for your reply and here in my scenario i am using the same ip address on CAS01 Trusted Interface (10.1.130.1) and Untrusted Interface (10.1.130.1) and CAS02 Trusted Interface (10.1.130.2) and Untrusted Interface (10.1.130.2).  How to configure the HA for L2 OOB Virtual Gateway in my scenario.  Please help in this issue.  Please find below my scenario.

Thanks,

Amjad,

The link I sent you is still valid. Please review that. You would define the same Virtual IP address on both interfaces. One thing which is wrong in your visio is the fact that your Trusted and Untrusted interfaces are both on the same VLAN. That will cause broadcast storm on your network and take out your switches. You want them to be on separate VLANs.

HTH,

Faisal


Dear Faisal,

I have deployed this as per cisco documentation.  Please find below the attachment and let me know if there is any changes.  Please send me the right scenario.

Thanks,

Amjad,

So you changed the VLANs for the CAS's trusted and untrusted interfaces to be on different VLANs?

Faisal

Dear Faisal,

I have not changed yet the ip address of Trusted and Untrusted Interfaces of my CAS01 and CAS02.  Can you please check the attachment of previous reply because i have deployed as per cisco documentation.  If there is any changes just let me know then i will change.

Thanks,

Amjad,

Your Visio suggested that your CAS and CAM trusted interfaces were on the same VLAN. Has that changed yet?

Faisal

Dear Faisal,

In my Visio i am using for the CAM 10.1.131.0 (vlan 131 ) subnet and for the CAS 10.1.130.0 (vlan 130 ) subnet and How same VLAN.  Please review the Visio file once again and give me the solution.

Thanks,

Amjad,

My mistake. I meant the CAS's trusted and untrusted interfaces, as shown from the snippet from your Visio. Have you changed them to different VLANs? Also what exact problem are you having? Without you articulating it right I won't be able to help you. Please explain in as much detail as you can as to what's not working.

Thanks,

Faisal