I'm working on a setup where the failover and stateful interfaces are on one physical connection over a switch. The stateful interface is on a separate vlan while the failover interface is on a vlan shared with some other devices.
I want to create a new vlan for the failover interface but wanted to know why exactly the docs say to have it on a separate vlan. I can make a guess that it's just more secure but wanted other input.
http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/ha_overview.html#wp1077563