cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1242
Views
0
Helpful
1
Replies

Cisco ASA Failover Link Redundancy

Simon Rittner
Level 1
Level 1

Hi folks,

 

at one of my customer´s sites I was confronted with a split brain ASA failover situation. Unfortunately the SFP of the failover link was broken. Both firewalls did not "see" each other while the failover link was broken.

 

I did not find a solution to eliminate this single point of failure. I tried to use a Port-Channel as failover interface but the command was rejected by ASA. 

 

Is there any chance to get the failover interface set up redundant?

 

Regards

Simon

1 Reply 1

Which ASA software version are you using? In newer versions, EtherChannels should work for the FO-link.

Instead of using a channel, you can also configure the redundant interfaces for this link:

https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/config-guides/cli/general/asa-94-general-config/interface-echannel.html#ID-2077-000000af

 

Review Cisco Networking for a $25 gift card