How to connect Cisco Nexus Core switch to Firepower 2110 in HA
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-01-2020 10:05 AM
I am having an issue with Connect my two Nexus Core switches to Firepower 2110 in HA. I have connectivity to the active firewall but I am not sure how I connect the standby firepower to the nexus switches. I different options ( L3 ports or VPC) and all connectivity to the active firewall works but it connectivity to the standby that is confusing me, especially it needs a standby ip addresses.
any help or direction would be appreciated
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-01-2020 11:23 AM
If you use the FTD in an Active/Standby failover deployment, then you need to create separate EtherChannels on the switches in the VSS/vPC, one for each FTD. On each FTD, a single EtherChannel connects to both switches.
See Figure 2. Active/Standby Failover and VSS/vPC
HTH
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-01-2020 01:34 PM
Now would I make those Port Channel on the Nexus, Layer 3 Port Channels since I need an IP address to connect to the firepower ports?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-01-2020 11:54 AM
how is your nexus configured in vPC mode, are you looking clustering? or just Active / Standby deployment? you need to be very carefull with vPC if that is not clustering.
