<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794770#M979982</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thankyou, I?m not thinking using the LAN inside connection also for failover, what do you think if I use a single "dedicated" link to do failover - stateful. My question is because in the documentation they use two links: one for failover and another for stateful. That means that if I?m using ASAs 5520 I will loose 2 of the five interfaces just for the failover.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 25 May 2007 20:43:20 GMT</pubDate>
    <dc:creator>osierra</dc:creator>
    <dc:date>2007-05-25T20:43:20Z</dc:date>
    <item>
      <title>ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794766#M979975</link>
      <description>&lt;P&gt;Hi, I would like to know what kind of performance problems could I have if I configure two ASAs 5520 doing Active/Standby Failover using the same LAN interface for the failover link/stateful llink.&lt;/P&gt;&lt;P&gt;That?s because I need to use two outside interfaces.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:20:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794766#M979975</guid>
      <dc:creator>osierra</dc:creator>
      <dc:date>2019-03-11T10:20:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794767#M979977</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The problem is that the firewall uses this interface to send state of connections to the standby, so every traffic in the firewall is replicated to the standby and in case it's going through your lan there must be some delay in this transmition. you can use management interface for this link!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2007 18:45:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794767#M979977</guid>
      <dc:creator>guibarati</dc:creator>
      <dc:date>2007-05-25T18:45:05Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794768#M979980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thankyou, What I want to do is connecto two ASA 5520 doing stateful failover Active/Stanby but I want to use only one Ethernet Interface. &lt;/P&gt;&lt;P&gt;Is there a problem of doing that??&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2007 19:27:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794768#M979980</guid>
      <dc:creator>osierra</dc:creator>
      <dc:date>2007-05-25T19:27:26Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794769#M979981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The problem I see if the two units are connected through the inside lan is that:&lt;/P&gt;&lt;P&gt;If the active unit fails and the secondary unit did not received all the states because of the delay of the connection some connections can be dropped because the packedt that left the "primary unit" now comes back to the secondary (who is active) if the secondary did not received the satate of this connection it will drop this packets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Plus the data exchanged between the units will be concurrent with the traffic that your firewall has to send to hosts who are communicating through the firewall what can make the connections slower dependinf of your traffic&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2007 19:35:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794769#M979981</guid>
      <dc:creator>guibarati</dc:creator>
      <dc:date>2007-05-25T19:35:43Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN BASED ACTIVE/STANDBY STATEFUL FAILOVER</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794770#M979982</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thankyou, I?m not thinking using the LAN inside connection also for failover, what do you think if I use a single "dedicated" link to do failover - stateful. My question is because in the documentation they use two links: one for failover and another for stateful. That means that if I?m using ASAs 5520 I will loose 2 of the five interfaces just for the failover.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 May 2007 20:43:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-based-active-standby-stateful-failover/m-p/794770#M979982</guid>
      <dc:creator>osierra</dc:creator>
      <dc:date>2007-05-25T20:43:20Z</dc:date>
    </item>
  </channel>
</rss>

