<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Active/Standby Failover on Single ADSL Connection in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106497#M393663</link>
    <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it possible to run a firewall cluster over an ADSL internet connection with a single IP address? My thoughts say, that it is not possible and that it would be neccesary to place a router before the two firewalls and work with a transfernetwork between the ASAs and the Router ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anybody have experience about AnyConnect Phone VPN and the Cisco CUCM Server? Do the phones use the ASA certificate to identify the WAN IP address of the Firewall or should the solution with a transfernetwork work for that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thomas&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 00:41:23 GMT</pubDate>
    <dc:creator>thomas.busse</dc:creator>
    <dc:date>2019-03-12T00:41:23Z</dc:date>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106497#M393663</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it possible to run a firewall cluster over an ADSL internet connection with a single IP address? My thoughts say, that it is not possible and that it would be neccesary to place a router before the two firewalls and work with a transfernetwork between the ASAs and the Router ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anybody have experience about AnyConnect Phone VPN and the Cisco CUCM Server? Do the phones use the ASA certificate to identify the WAN IP address of the Firewall or should the solution with a transfernetwork work for that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thomas&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:41:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106497#M393663</guid>
      <dc:creator>thomas.busse</dc:creator>
      <dc:date>2019-03-12T00:41:23Z</dc:date>
    </item>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106498#M393668</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Thomas,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You could run a failover cluster and then just monitor the internal side and do not monitor the external side ( ofcourse that will not be recommended as if by any chance you have a problem with the outside interface failover will not happen as you are not monitoring due to the fact you are not exchanging hello packets because you only have 1 Ip,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the phone VPN link:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-9124"&gt;https://supportforums.cisco.com/docs/DOC-9124&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Dec 2012 16:31:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106498#M393668</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-12-27T16:31:43Z</dc:date>
    </item>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106499#M393672</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you for your reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think we will go for the solution with the transfernetwork between ASA and ISP-Router.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;As far as I understood, the ASA certificate is used for the SSL handshake to authenticate the peers and the configuration file on the CUCM Server holds all the additional information like IP Adresses and Group-URLs, etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for the link to the phone VPN thread, I was wondering, if the SSL Premium license is mandatory or if for testing purposes the phone VPN should also work with the two included premium licenses of the security plus license plus the phone vpn license, maybe do you have any experience about that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thomas&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Dec 2012 07:38:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106499#M393672</guid>
      <dc:creator>thomas.busse</dc:creator>
      <dc:date>2012-12-28T07:38:04Z</dc:date>
    </item>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106500#M393676</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Thomas,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are running a higher version than 8.3.1 you will not need to have the same license on both units as they will share their existing license ( so the active unit can use them)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You will need to use both of the licenses as the link says,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Dec 2012 17:29:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106500#M393676</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-12-28T17:29:05Z</dc:date>
    </item>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106501#M393681</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can't use a cluster with PPPoE or DHCP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you access the ADSL modem via Ethernet (fixed IP) you can have a cluster but you should NOT add a standby address to the outside interface (i. e. standby member will not have an outside address).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Dec 2012 19:38:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106501#M393681</guid>
      <dc:creator>Peter Koltl</dc:creator>
      <dc:date>2012-12-31T19:38:53Z</dc:date>
    </item>
    <item>
      <title>Active/Standby Failover on Single ADSL Connection</title>
      <link>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106502#M393692</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Julio &amp;amp; Peter, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;first of all, happy new year &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And we have ordered all the needed licenses, thank you for your help!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thomas&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Jan 2013 07:54:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-standby-failover-on-single-adsl-connection/m-p/2106502#M393692</guid>
      <dc:creator>thomas.busse</dc:creator>
      <dc:date>2013-01-02T07:54:33Z</dc:date>
    </item>
  </channel>
</rss>

