04-15-2008 03:48 AM - edited 03-11-2019 05:31 AM
We have 2 ASA firewalls in Routed mode and Active/Standby failover.
If you do not configure Standby IP addresses for the interfaces is Normal (waiting) an expected behaviour?
This host: Primary - Active
Interface outside (217.112.81.130): Normal (Waiting)
Interface inside (10.102.1.1): Normal (Waiting)
Interface mgm (192.168.5.1): Normal (Waiting)
Other host: Secondary - Standby Ready
Interface outside (0.0.0.0): Normal (Waiting)
Interface inside (0.0.0.0): Normal (Waiting)
Interface mgm (0.0.0.0): Normal (Waiting)
I cannot find any definitive answers on the Cisco sites for this.
Help.
04-15-2008 03:28 PM
Yes, this is normal. I would recommend that you set standby IP addresses on the interfaces else failovers will not occur if there is an interface failure. Refer following link for failover configurations-
http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/failover.html#wp1064158
Hope that helps.
Regards,
Vibhor.
04-15-2008 11:51 PM
sorry. failover DOES occur when an interface is disconnected or fails even without the standby addresses!
is this also normal? i can see no documentation where standby addresses have not been set
i'm still not 100% clear on this
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: