cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
242
Views
0
Helpful
2
Replies

Load balancing/Failover configuration using VPN 3030

rperera
Level 1
Level 1

Currently we are using a VPN 3030 with Cisco VPN client software and are looking at purchasing another 3030 to implement a load balancing/failover configuration. Once the cluster is enabled does the configurations get replicated across the members in the cluster ? In other words do you configure just the master or do you have to do the same modification on all the members?

Thanks

2 Replies 2

gfullage
Cisco Employee
Cisco Employee

You have to manually configure the other members in the cluster, and the configuration has to be the same across all memebers also. The easiest way to do this is TFTP the CONFIG file off the primary, and TFTP it onto the secondary (s),, reboot and then just change the IP addresses on the interfaces via the console.

The CONFIG file is just a text file, sort of like a win.ini file, so you can even edit it BEFORE TFTP'ing it onto the secondary(s) and change the IP addresses manually in it, just do a search for the current IP address and you'll see where it is in the file.

Hi Glenn,

Is there any plan for VPN3000 to be able to synchronize the "CONFIG" file between the cluster ( be it VRRP or LOAD-BALANCE design).

It is very incovenient to do it manually like you said before. PIX failover does it very nicely to sync the CONFIG.

Best Regards,

Engel

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: