cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
645
Views
0
Helpful
1
Replies

Actve/Actve FWSM shared interface can't join f/o group

khary
Level 1
Level 1

I have 2 6500/FWSM in multiple mode with 3 security context. I am sharing VLAN 800 as the outside of all 3 context.

Context 1 and 2 are in failover group 1. However, I am not able to add the 3rd context to failover group 2. I received the following error:

ERROR: Cannot set failover group due to a conflict with a shared interface in another failover group.

Is shared interfaces a capability of the FWSM ver 3.1(4)?

1 Reply 1

daniel.cleary
Level 1
Level 1

Each security context will need there own outside interface. Having 3 contexts; is equivalent to separating the FWSM into 3 devices.

There is another string that is similar to what you need.

Please read the cascading context string on this forum

Review Cisco Networking for a $25 gift card