<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need advice on migrating firewalls to active/active setup in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163713#M1074555</link>
    <description>&lt;P&gt;I'll have a look at this. What is active/active for? Doesn't this help balance the load across both ASAes?&lt;/P&gt;</description>
    <pubDate>Thu, 08 Oct 2020 18:56:34 GMT</pubDate>
    <dc:creator>spfister336</dc:creator>
    <dc:date>2020-10-08T18:56:34Z</dc:date>
    <item>
      <title>Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163686#M1074550</link>
      <description>&lt;P&gt;We have a 6509e as the core of our network. Connected to this are a pair of ASA 5585-Xs acting as a firewall. These are currently in an active/standby setup. Lately, in the mornings especially, we seem to be hitting the limit of how much traffic these can handle. We would like to migrate over to active/active to distribute the load better. As far as I can tell, we have a license for active/active. Currently, there's a single default route pointing to the active firewall's inside address.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How is this normally done? Is it common to use a FHRP like GLBP? I'm really hoping to not have to redesign the whole network.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 18:01:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163686#M1074550</guid>
      <dc:creator>spfister336</dc:creator>
      <dc:date>2020-10-08T18:01:17Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163693#M1074552</link>
      <description>&lt;P&gt;Make sure you have clarity on Active / Active Firewall&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ASA Active / Active FW&amp;nbsp; means&amp;nbsp; Multi-Context default&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That means :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Context A&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FW1- Active - FW2 Standby&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Context B&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FW -Standby&amp;nbsp; FW2&amp;nbsp; -- Active&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So the end is Active-Standby - is this your requirement?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 18:13:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163693#M1074552</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-10-08T18:13:12Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163697#M1074553</link>
      <description>&lt;P&gt;My main goal is to distribute the load. One ASA is hitting capacity (not constantly, but enough that end-users are noticing), and one isn't doing anything. They have SSP-20 in both. We could look at replacing them, but since we appear to have licenses for active/active, I thought I'd look at this first.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 18:19:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163697#M1074553</guid>
      <dc:creator>spfister336</dc:creator>
      <dc:date>2020-10-08T18:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163700#M1074554</link>
      <description>&lt;P&gt;You can do a Cluster.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa95/configuration/general/asa-95-general-config/ha-cluster.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa95/configuration/general/asa-95-general-config/ha-cluster.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 18:27:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163700#M1074554</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-10-08T18:27:02Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163713#M1074555</link>
      <description>&lt;P&gt;I'll have a look at this. What is active/active for? Doesn't this help balance the load across both ASAes?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 18:56:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163713#M1074555</guid>
      <dc:creator>spfister336</dc:creator>
      <dc:date>2020-10-08T18:56:34Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163723#M1074558</link>
      <description>&lt;P&gt;Also... if one unit fails, will that bring down the cluster?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 19:14:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163723#M1074558</guid>
      <dc:creator>spfister336</dc:creator>
      <dc:date>2020-10-08T19:14:46Z</dc:date>
    </item>
    <item>
      <title>Re: Need advice on migrating firewalls to active/active setup</title>
      <link>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163763#M1074567</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Let me address both :&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;What is active/active for? Doesn't this help balance the load across both ASAes?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;This only available for context.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Also... if one unit fails, will that bring down the cluster?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;No it will not bring down the cluster. :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;a better explanation can be found here : (hope that give you more information about what you looking for)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://networkdirection.net/articles/firewalls/asacluster/" target="_blank"&gt;https://networkdirection.net/articles/firewalls/asacluster/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2020 20:56:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/need-advice-on-migrating-firewalls-to-active-active-setup/m-p/4163763#M1074567</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-10-08T20:56:30Z</dc:date>
    </item>
  </channel>
</rss>

