02-06-2014 12:57 AM - edited 03-11-2019 08:41 PM
Hi all,
need to ask about implemanting Cisco ASA failover Active/Standby
my question are
1) need to run ASDM on both active/standby same version?? lets say 6.4.5
2) failover link need to used crossover cable?
3) IPS ver need to be same on active/standby
Solved! Go to Solution.
02-06-2014 01:45 AM
1) need to run ASDM on both active/standby same version?? lets say 6.4.5
Yes, this is because the configuration of the Active ASA is copied to the standby ASA. In the configuration are the settings of which ASDM image to use, so if you have a different ASDM image installed on the standby than the one that is defined in the configuration, the standby ASA will not know where to launch the ASDM from.
2) failover link need to used crossover cable?
No, The default auto negotiation on ASAs use auto MDI/MDIX
3) IPS ver need to be same on active/standby
Yes and no. IPS settings do not replicate so you need to manually configure each IPS. Ofcourse it is recommended to use the same on both.
--
Please remember to rate and select a correct answer
02-06-2014 01:45 AM
1) need to run ASDM on both active/standby same version?? lets say 6.4.5
Yes, this is because the configuration of the Active ASA is copied to the standby ASA. In the configuration are the settings of which ASDM image to use, so if you have a different ASDM image installed on the standby than the one that is defined in the configuration, the standby ASA will not know where to launch the ASDM from.
2) failover link need to used crossover cable?
No, The default auto negotiation on ASAs use auto MDI/MDIX
3) IPS ver need to be same on active/standby
Yes and no. IPS settings do not replicate so you need to manually configure each IPS. Ofcourse it is recommended to use the same on both.
--
Please remember to rate and select a correct answer
02-12-2014 05:07 PM
Hi Marius Gunnerud,
by the way thanks. another questions. my current running unit is 8.0(4) and ASDM 6.3(3). can i know, where to download ASDM ver 6.3(3) for ASA 5510 except another method is copy flash tftp. i try cisco download but dont have this model.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide