<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PIX configuration Replication in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346619#M560867</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to replciate the configuration of a PIX failover bundle across a wan link to another failover bundle? The idea is to set up two exits out of our network. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;While traffic can be re-routed in case the primary gateway fails, our concern is to ensure the PIX ACLs and Nat configurations are available at the secondary at the time of failure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We need a firewall at both gateways. How do we ensure that the configurations are replicated across both sites over the WAN? Changes will be made only at the primary site. The secondary site will be purely for backup only.&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 07:37:35 GMT</pubDate>
    <dc:creator>fullerms</dc:creator>
    <dc:date>2020-02-21T07:37:35Z</dc:date>
    <item>
      <title>PIX configuration Replication</title>
      <link>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346619#M560867</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to replciate the configuration of a PIX failover bundle across a wan link to another failover bundle? The idea is to set up two exits out of our network. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;While traffic can be re-routed in case the primary gateway fails, our concern is to ensure the PIX ACLs and Nat configurations are available at the secondary at the time of failure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We need a firewall at both gateways. How do we ensure that the configurations are replicated across both sites over the WAN? Changes will be made only at the primary site. The secondary site will be purely for backup only.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:37:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346619#M560867</guid>
      <dc:creator>fullerms</dc:creator>
      <dc:date>2020-02-21T07:37:35Z</dc:date>
    </item>
    <item>
      <title>Re: PIX configuration Replication</title>
      <link>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346620#M560869</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can try LAB based failover, and increase to failover timers to a high value. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Sep 2004 17:13:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346620#M560869</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-09-16T17:13:17Z</dc:date>
    </item>
    <item>
      <title>Re: PIX configuration Replication</title>
      <link>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346621#M560871</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I assume you mentioned LAN based failover. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Replication needs to happen between primary and secondary firewalls in the active site, AND then replicate to the failover bundle in the DR site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this feasible, or do we need to place one firewall of the failover bundle in the active site and the other in the DR site?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Sep 2004 03:39:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346621#M560871</guid>
      <dc:creator>fullerms</dc:creator>
      <dc:date>2004-09-17T03:39:29Z</dc:date>
    </item>
    <item>
      <title>Re: PIX configuration Replication</title>
      <link>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346622#M560872</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;yes i meant LAN based failover. But i thought that primary and secondary firewalls are in two separate sites. In your scenario, both primary and secondary on site1, and then you want the configs to be replicated to DR site, this is not possible via Failover. &lt;/P&gt;&lt;P&gt;You have to place one firewall of failover bundle in active site and other in the DR site, that is what i meant.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Nadeem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Sep 2004 17:56:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-configuration-replication/m-p/346622#M560872</guid>
      <dc:creator>nkhawaja</dc:creator>
      <dc:date>2004-09-17T17:56:34Z</dc:date>
    </item>
  </channel>
</rss>

