06-08-2009 05:35 AM - edited 03-11-2019 08:40 AM
I'll be configuring an ASA 5550 for a DR site. Is there a way that I can configure this 5550 to be a failover in case the primary in the main site goes down even though it's on a different subnet?
Thanks,
John
Solved! Go to Solution.
06-08-2009 06:17 AM
John
If you mean failover as in active/standby scenario then no you can't because for that to work the firewalls need to have L2 adjacency.
Jon
06-08-2009 06:17 AM
John
If you mean failover as in active/standby scenario then no you can't because for that to work the firewalls need to have L2 adjacency.
Jon
06-08-2009 06:19 AM
Thanks :)
06-12-2009 06:36 AM
Jon-
If they were in the same subnets could you? I have 10 gig between my datacenters. I think you can, my issue would be detecting what types of failover. Can you track for failover purposes? I can loose internet link, but the link stays up? Thanks for your help.
06-12-2009 07:44 AM
Jake
"If they were in the same subnets could you ?"
Yes you could although you would need to factor in the latency between the 2 sites and see if that would affect keepalive/state packets.
I don't believe the ASA support object tracking in the same way a router does.
Is your internet link terminated into a router then ?
Jon
06-12-2009 09:21 AM
The internet is at both sites with 7200s. I did see that the ASA can do ip sla tracking, but its only for default routes. Since these are going to be at different locations, I need to be able to track the inside route as well. Any guidance is appreciated.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide