<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HTTPS Connection during Stateful Failover in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3738605#M132763</link>
    <description>&lt;P&gt;according to the cisco asa, all in one firewall bk - the stateful failover does not replicate http-based connections by default as they can add considerable load on the asa if the traffic is a lot.&lt;/P&gt;
&lt;P&gt;regards&lt;/P&gt;
&lt;P&gt;azam&lt;/P&gt;</description>
    <pubDate>Sun, 04 Nov 2018 00:33:42 GMT</pubDate>
    <dc:creator>mkazam001</dc:creator>
    <dc:date>2018-11-04T00:33:42Z</dc:date>
    <item>
      <title>HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3706424#M132758</link>
      <description>&lt;P&gt;If 2 ASAs are setup in HA w/ stateful failover enabled and a failover occurs, do all https connections need to be re-established?&amp;nbsp; The bulk of the connections would be via the outside interface facing servers, while a smaller set would be via OSPF learned networks.&amp;nbsp; Here's the failover configuration from the ASA:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;failover&lt;BR /&gt;failover lan unit secondary&lt;BR /&gt;failover lan interface failover GigabitEthernet1/8&lt;BR /&gt;failover key mykey&lt;BR /&gt;failover polltime unit 5 holdtime 30&lt;BR /&gt;failover replication http&lt;BR /&gt;failover link failover GigabitEthernet1/8&lt;BR /&gt;failover interface ip failover 172.16.252.254 255.255.255.0 standby 172.16.252.250&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 11:10:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3706424#M132758</guid>
      <dc:creator>mumbles202</dc:creator>
      <dc:date>2019-03-12T11:10:58Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3706474#M132759</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You have stateful failover configured and hence all TCP connections will survive the failover if it happens.&lt;/P&gt;
&lt;P&gt;The endpoint applications would not know a difference and there might be a dup ack or retransmission packets which will be a normal TCP scenario and the user running the application would not notice any difference.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regarding the Dynamic routing protocols, the routes are updated to standby unit and hence the disruption is minimal, all this is clearly documented in the below document, please refer to the 'Supported Features' Section:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa97/configuration/general/asa-97-general-config/ha-failover.html#ID-2107-000000f0" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa97/configuration/general/asa-97-general-config/ha-failover.html#ID-2107-000000f0&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;AJ&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Sep 2018 17:11:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3706474#M132759</guid>
      <dc:creator>Ajay Saini</dc:creator>
      <dc:date>2018-09-13T17:11:58Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3707122#M132760</link>
      <description>&lt;P&gt;Thanks.&amp;nbsp; I thought that would be the case with HTTP connections, wasn't sure about HTTPS.&amp;nbsp; I read the note about the OSPF learned routes as well.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Sep 2018 13:32:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3707122#M132760</guid>
      <dc:creator>mumbles202</dc:creator>
      <dc:date>2018-09-14T13:32:08Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3712444#M132761</link>
      <description>&lt;P&gt;Can anyone confirm the same holds true for https connections?&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 20:37:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3712444#M132761</guid>
      <dc:creator>mumbles202</dc:creator>
      <dc:date>2018-09-24T20:37:25Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3712453#M132762</link>
      <description>&lt;P&gt;Ajay has replied that all tcp connections will survive the failover. HTTPS is part tcp.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Sep 2018 20:55:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3712453#M132762</guid>
      <dc:creator>slicerpro</dc:creator>
      <dc:date>2018-09-24T20:55:05Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Connection during Stateful Failover</title>
      <link>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3738605#M132763</link>
      <description>&lt;P&gt;according to the cisco asa, all in one firewall bk - the stateful failover does not replicate http-based connections by default as they can add considerable load on the asa if the traffic is a lot.&lt;/P&gt;
&lt;P&gt;regards&lt;/P&gt;
&lt;P&gt;azam&lt;/P&gt;</description>
      <pubDate>Sun, 04 Nov 2018 00:33:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-connection-during-stateful-failover/m-p/3738605#M132763</guid>
      <dc:creator>mkazam001</dc:creator>
      <dc:date>2018-11-04T00:33:42Z</dc:date>
    </item>
  </channel>
</rss>

