How to configure active active Configuration
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 09:44 AM - edited 03-11-2019 05:12 PM
hI ,
i am looking for a active active solution design with the below desing .
2 cisco asa in Site 1 in active /Standby mode
1 cisco asa in Site 2
Both the sites are connected on the private line .
running all services from site 1 and only runnign specific service from site 2 , from site 2 how make only some applications hosted on that site ,
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 10:26 AM
Hello Vaibhav,
What do you mean by having 3 ASA's. There is no scenario that support's that.
You can only have 2 on a cluster ( running active\standby or active\active)
Regards,
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 10:30 AM
keeping active firewall on the site2 with switching and routing on that level . Donot want to break the site1 firewall standby.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 10:35 AM
Hello,
The thing is that on a failover cluster there can only be 2 boxes and you are trying to make it happen with 3..
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 11:59 AM
my apologies i was not clear i donot want to run the cluster from site 2 . Just use it to redirect the traffic from there with switchin and routing for some small services
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 12:02 PM
i was referning from this post
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2012 01:02 PM
Hello,
Well, based on your other question, this cannot be possible as again you will need to have a way to determine wheter Site A is up or site B is up.
Routing protocols looks like the way to go
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
