cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
362
Views
0
Helpful
2
Replies

PIX stateful failover and external circuits

hws_admin
Level 1
Level 1

Using a pair of PIX firewalls, OS ver 7.2, in a failover setup.

The outside interfaces of the two PIXes are connected to provider on two separate circuits.

Provider claims that in such a configuration, stateful failover does not work, and we need to hook up a switch (or a couple switches) between the pair of PIXes and the two circuits.

Somehow that doesn't ring true to me. I thought stateful failover has nothing to do with the way the outside interfaces are hooked up.

Which way is it?

Can somebody point me to a document that supports either one version or the other?

1 Accepted Solution
2 Replies 2

mrinmoy.m
Level 1
Level 1

Hi Dude...

Are you running the Firewall in multiple context mode. What failover you have configured - Active/Active or Active/Standby?

In this scenario the Firewalls are getting seperate updates from diff. devices and routing of the packet will also be different. U cant have diff configuration on two firewalls operating in failover mode.

Am not sure whether you get such scenario.

Regards

mrinmoy

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card