08-31-2021 06:13 AM
HI,
I have Cisco Firepower FTD 1010, and due to the fact that we need high available network, i have question if i can order another FTD 1010, and configure both devises with High Availability Active and Standby.
Now i have one FTD1010 connected to 3 Cisco SG350.
Can i do a high availability Active and standby ?
Any information or from experience knowledge, or documentation will be appreciated
Solved! Go to Solution.
08-31-2021 06:48 AM - edited 08-31-2021 07:05 AM
Hi
From my experience i did a similar thing with FTD 2100 managed from FMC. If you doing from FMC make sure your in service firewall stay (make its as primary firewall) when doing a HA configure (From FMC GUI). I am sure the method for FTD2100 and 1010 is same.
the reason saying keep the in service production as Primary as the Primary will push the configuration to Secondary firewall via FMC. make sure your layer 2 (VLAN) are solid and configured on both sides of DC
make sure you have license for HA pair. here i get from cisco web here
The following license requirements must be met for both physical and virtual FTDs:
08-31-2021 06:48 AM - edited 08-31-2021 07:05 AM
Hi
From my experience i did a similar thing with FTD 2100 managed from FMC. If you doing from FMC make sure your in service firewall stay (make its as primary firewall) when doing a HA configure (From FMC GUI). I am sure the method for FTD2100 and 1010 is same.
the reason saying keep the in service production as Primary as the Primary will push the configuration to Secondary firewall via FMC. make sure your layer 2 (VLAN) are solid and configured on both sides of DC
make sure you have license for HA pair. here i get from cisco web here
The following license requirements must be met for both physical and virtual FTDs:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide