cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1595
Views
0
Helpful
1
Replies

Remote Access VPN on FMC Active/Standby FTD: the dashbord shows Active session in both Active and Standby FTD

Siemmina
Level 1
Level 1

Hello Community, 

 

We have two FTD 2100 in High availability Active/ Standby managed by a virtual Firepower Management Center, I noticed that from the VPN dashboard -> Active VPN Sessions by device shows that a certain number of vpn clients are under one device (Active FTD) and under the Standby device.

 

As per cisco documentation, the VPN sessions are present only on the active node on the cluster, why the FMC shows that the vpn clients are connected from both the Active and standby nodes?

 

was there anyone who notices the same anomaly?

 

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

The vpn sessiondb is replicated from the Active to the Standby node. While the user traffic is only going through the Active one, external instrumentation such as FMC will show both units having the sessions.

Review Cisco Networking for a $25 gift card