02-06-2019 09:44 AM - edited 03-12-2019 07:16 AM
I am configuring 2 Model 2140 Firepower NGFW's in a high availability cluster through the Cisco Firewall Management center server.
I have the cluster up and operational and have a separate IP address assigned to each firewall's management interface as well as an IP address to each devices Failover/State Interface that connects the firewalls together with a direct attach SFP+ 10 Gbit cable.
I am used to the ASA HA configurations and expected to need a separate IP address for of the traffic interfaces (Inside, Outside, etc.) on each device. Thinking then I would need an ip address for the active 2140's Inside Interface, and an ip address for the standby 2140's inside interface, etc.
I cannot find anywhere to configure interface IP's other than under the HA group and that only lets me set one IP address per interface for the group.
Do I need an ip address for each standby data interface or with the NGWF's do they now just share one IP address per data interface?
Jim
Solved! Go to Solution.
02-08-2019 03:10 PM
couple of deployment we did with below config guide :
sure it will help you :
02-08-2019 03:10 PM
couple of deployment we did with below config guide :
sure it will help you :
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide