cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
633
Views
0
Helpful
6
Replies

Firepower Issue

Mustapha Bassim
Level 1
Level 1

Hello Dears

i have the attched digram with VPC configration only between the two swiches when i reload the master VPC nexus switch there is a downtime about 1 min while this not take place since the firepower devices are confiagred as Active/Standby mode any one can help ?

 

Bests

6 Replies 6

as-1.jpg

the both FW as I know need to connect to both NSK SW (running vPC) via Port-channel.

ok dear so it's not apply without doing vPC on switch side ? and also on firewall side we just need to enable LACP ?

what are the Firepower model you using are they 4100 or 9300 seires?

looking into your presentation diagram you only showing 1 link going towards the firewall. where as ideally you should have a port-channel from firewall to Nexus 9K. (and so should Nexus presentation have a VPC configured as you mentioned earlier).

 

so in summary. You configured VPC on two switches which is good. at the same time the firewall need to be configured in as port channel as LACP. (LACP need to be configured from Nexus to Firewall and from Firewall to Nexus). once this configured if you failover the firewall or either Master VPC/Slave VPC goes does it should not have impact on firewall due to STP fakeing it to be showing as 1 giant link.

please do not forget to rate.

Hello Dear and thnx for reply , i have 2130 model i do not now if it's working with vPC or not ?

Mustapha Bassim
Level 1
Level 1

29 Po29 down* failed vpc port channel -
mis-config due to vpc
links in the 2
switches connected to
different partners

when i configre the vPC we got this error

Mustapha Bassim
Level 1
Level 1

up

Review Cisco Networking for a $25 gift card