cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
630
Views
0
Helpful
2
Replies

PIX stateful failover and external circuits

hws_admin
Level 1
Level 1

Using a pair of PIX firewalls, OS ver 7.2, in a failover setup.

The outside interfaces of the two PIXes are connected to provider on two separate circuits.

Provider claims that in such a configuration, stateful failover does not work, and we need to hook up a switch (or a couple switches) between the pair of PIXes and the two circuits.

Somehow that doesn't ring true to me. I thought stateful failover has nothing to do with the way the outside interfaces are hooked up.

Which way is it?

Can somebody point me to a document that supports either one version or the other?

1 Accepted Solution
2 Replies 2

mrinmoy.m
Level 1
Level 1

Hi Dude...

Are you running the Firewall in multiple context mode. What failover you have configured - Active/Active or Active/Standby?

In this scenario the Firewalls are getting seperate updates from diff. devices and routing of the packet will also be different. U cant have diff configuration on two firewalls operating in failover mode.

Am not sure whether you get such scenario.

Regards

mrinmoy

Review Cisco Networking for a $25 gift card