07-25-2011 08:51 PM - edited 03-11-2019 02:03 PM
Hello everyone,
I have 2 FWSM running on 2 Cat6500 chassis, they work as a Active/Stanby group. Firewall mode is transparent.
Here is the configuration for Interface:
interface Vlan9
description **Inside 10.98.1.x**
nameif inside3
bridge-group 9
security-level 100
!
interface Vlan209
description **Outside 10.98.1.x**
nameif outside3
bridge-group 9
security-level 0
!
interface BVI9
ip address 10.98.1.247 255.255.255.0 standby 10.98.1.248
!
HA is running well, but I can not ping the standby IP (10.98.1.248). So what could be the problem?
07-25-2011 11:59 PM
Hi,
What version are you running on the FWSM? Where are you trying to ping from? Could you verify the SVI configuration on the switch with standby FWSM blade?
Let me know.
Regards,
Anu
07-26-2011 12:04 AM
Dear Anu,
I just tried to ping from FWSM Active and the running version is 4.0(6).
I run VRRP on the switch. Thank you.
07-26-2011 12:36 AM
Hi Hiep,
Could you check if icmp traffic is permitted on the standby FWSM?
It would be great if you can post the "sh run" from both the FWSMs here.
Regards,
Anu
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: