<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTD HA failover scenario (No data interface monitored) in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-ha-failover-scenario-no-data-interface-monitored/m-p/4512407#M1085510</link>
    <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a FTD pair in HA with active standby configuration. Both peer are connected to DC switches using VPC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A direct failover and staelink is connected between both peers. We do not have any data interface monitored or standby ip configured on it. i.e. inside and ouside&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) If failover link and/or statelink disconnects in this case then what would happen?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) if data interfaces were also being monitored with standby ip and failover link and/or statelink fails then what would happen?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 03 Dec 2021 06:58:09 GMT</pubDate>
    <dc:creator>00u17</dc:creator>
    <dc:date>2021-12-03T06:58:09Z</dc:date>
    <item>
      <title>FTD HA failover scenario (No data interface monitored)</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ha-failover-scenario-no-data-interface-monitored/m-p/4512407#M1085510</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a FTD pair in HA with active standby configuration. Both peer are connected to DC switches using VPC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A direct failover and staelink is connected between both peers. We do not have any data interface monitored or standby ip configured on it. i.e. inside and ouside&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) If failover link and/or statelink disconnects in this case then what would happen?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) if data interfaces were also being monitored with standby ip and failover link and/or statelink fails then what would happen?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 06:58:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ha-failover-scenario-no-data-interface-monitored/m-p/4512407#M1085510</guid>
      <dc:creator>00u17</dc:creator>
      <dc:date>2021-12-03T06:58:09Z</dc:date>
    </item>
    <item>
      <title>Re: FTD HA failover scenario (No data interface monitored)</title>
      <link>https://community.cisco.com/t5/network-security/ftd-ha-failover-scenario-no-data-interface-monitored/m-p/4512497#M1085515</link>
      <description>&lt;PRE&gt;1) If failover link and/or statelink disconnects in this case then what would happen? &lt;/PRE&gt;
&lt;P&gt;They become the split brain. that means both become active. (then one should manually shut down to restore the services.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;2) if data interfaces were also being monitored with standby ip and failover link and/or statelink fails then what would happen? &lt;/PRE&gt;
&lt;P&gt;Good failure scenarios are explained below :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-management-center/212699-configure-ftd-high-availability-on-firep.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-management-center/212699-configure-ftd-high-availability-on-firep.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/firepower_threat_defense_high_availability.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/firepower_threat_defense_high_availability.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Dec 2021 09:29:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-ha-failover-scenario-no-data-interface-monitored/m-p/4512497#M1085515</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-12-03T09:29:01Z</dc:date>
    </item>
  </channel>
</rss>

