08-06-2022 08:37 AM
Hello,,
i have issue with my environment with standby IP address,,
MY LAB as Follow :
1- Two FTD 2110 works on the HA group successfully,
2- Enable Standby IP address on all interfaces
the issue when switching over the node is the standby IP will work instead of the primary IP, and this is a problem with example, the public interface contains active IP 10.10.10.1 standby IP 10.10.10.2 when switch over node from active to standby the IP 10.10.10.2 will works instead of 10.10.10.1.
so how can make the primary IP be assigned on the currently active node?
Thanks
08-06-2022 08:52 AM
@a.aljiledi from the CLI, please provide the output of "show failover" and "show high-availability config" from both FTDs.
Have you checked out the HA failover troubleshooting guide? https://www.cisco.com/c/en/us/support/docs/availability/high-availability/217763-troubleshoot-firepower-threat-defense-hi.html
08-06-2022 09:43 AM
both FTD HA outside must share the same broadcast, it not only the IP in same subnet but also must both OUT share same broadcast domain.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide