cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
443
Views
0
Helpful
2
Replies

Cisco IOS Firewall HA

martinbuffleo
Level 1
Level 1

I'm looking to use 2x 2901 Routers as firewalls on my network.

Will this work?

Will the configurations stay in sync? If not how do other people manage this?

Or should I just buy  2x ASA 5510 and build active/standby

2 Replies 2

cadet alain
VIP Alumni
VIP Alumni

Hi,

the NAT sessions can be synced with the SNAT feature but it is phased out by Cisco and maybe it isn't supported on newer platforms like the 2901.

Cisco recommends using active/standby or active/active ASA pair for redundancy/failover.

Regards.

Alain

Don't forget to rate helpful posts.

Thanks for the reply

ASA 5510 it is then. Hope the boss doesn't mind the extra cost.

Review Cisco Networking for a $25 gift card