02-21-2022 02:44 AM
Hi All ,
I try to find document about ESAv clustering but cannot find . I'm not sure Can I do 4 Clustering for ESAv ?
Thank you .
Solved! Go to Solution.
02-21-2022 03:49 AM
02-21-2022 07:17 PM
you can join ESA in Cluster without SMA
02-21-2022 03:49 AM
02-21-2022 07:07 PM
Thank you the answer. Do I want purchase Cisco SMA Centralized Email Management ? Or I can directly join cluster without centralized management.
02-21-2022 07:17 PM
you can join ESA in Cluster without SMA
02-21-2022 07:24 PM
02-21-2022 07:31 PM
Yes, as Sriram said, you don't have to have an SMA to cluster ESAs.
There are a couple things to keep in mind. Esa clustering is really "multi level configuration replication". Any failover/high availability features actually happen outside of the ESAs.
Without an SMA, you'll have 4 spam quarantines and 4 sets of logs, so when you're troubleshooting things it can become more difficult.
02-21-2022 07:36 PM
Thank you for more information. I don't have the experience for implement ESA. You can more explain "multi level configuration replication". You mean If I join 4 ESA to 1 Cluster . If I want manage and configure the device. Can I access to only 1 primary node it can replicate to all node in cluster am i correct ?
02-23-2022 06:08 AM
02-23-2022 06:20 AM
Thank you for information . My Understand if I would like to implement the new 4 nodes and would like to join cluster all . I can configure policy .... etc. at the first one machine If I done the the first one machine I will configure other node to join cluster with the first one . Am I correct ? If I correct . In the future If I would like to modify some configuration. Can I configure only 1 node for change something?
If my understand wrong. Please suggest me.
02-24-2022 07:30 AM
You are correct...
You can join machines to the cluster before or after, and the config will come over.
You can make the change on one box, and it will replicate.
There are a few settings that are always per machine, and most of them will force you to be in machine mode, things like IP config, routing config, SAML, etc.
The two that I remember that that don't are:
Security Services/File Reputation and Analysis connecting the box to AMP
Security Services/Cisco IronPort Email Encryption provisioning is per box
02-24-2022 07:40 AM
Thank you so much for information . I think information from you will be help me in the future if I have implement project .
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide