11-20-2005 09:10 PM - edited 02-21-2020 12:32 AM
I have a PIX 515 in Active\Passive failover on PIX 7.0(2). I have disabled monitoring of several interfaces with the "no monitor-interface" command as they are not in use. When checking failover on secondary firewall all interfaces are being monitored and the "no monitor-interface" configuration ahs not been replicated. Does anyone know if this is a bug or intentional?
11-21-2005 07:52 AM
Each command u give on the Active unit should be "executed" on the Standby unit too by the failover framework otherwise the failover function would not work in case of failure of the primary unit giving u a working device with a different configuration, this is real also for the no monitor-interface command.
What about if u do a "write standby" on the active unit?
Bye
Francesco
11-21-2005 02:03 PM
I have done a write standby and this has not fixed the issue. I have even entered the configuration on the secondary PIX directly then done a write standby from the primary, this has overwriten configuration and the original issue reappears. The write standby does not seem to replicate the "no monitor-interface" commands.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide