cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
175
Views
0
Helpful
1
Replies

Secure Firewall 3105 HA Pairing Issues

Ash Roberts
Level 1
Level 1

Hi All, I have recently setup two Cisco Secure Firewall 3105s and we have attempted a bunch of times to HA pair them but seem to keep running into issues.

Firstly, both were registered with Cisco smart licenses and could reach internet and resolve etc before the HA. For HA Comms both use port 1/16 via an middleman switch on a dedicated HA VLAN. As per best practice.


On enabling the HA I setup the Primary Firewall using the GUI wizard, selecting "Primary" unit, this then gives you the configuration to paste into the secondary firewall.
Go onto the Secondary, select Secondary from the HA wizard and paste in the configuration the primary had spit out.

After confirming the configuration it says congratulations HA is setup etc. Next my Primary firewall rebooted and lost half of its configuration, I'm guessing it for some reason synced the wrong way and took the secondary config.

To get everything back i broke the HA which disabled all the ports on the secondary unit as stated by the Wizard (So it knows this is the secondary, I'm confused why the primary rebooted). I factory-reset and then rolled back to pre-HA configuration. Now this Firewall (Secondary) refuses to check in with Cisco Smart Licensing so I am unable now to even setup HA.

My primary remained alive albeit missing half it's configuration but I was able to roll back the configuration and i am back to where i was pre-HA with all the correct config.

Once Licensed correctly I will try again but I'm just concerned the same thing will happen and ill be going round in circles. is there anything we are missing surely it's not this finicky to setup. 

1 Reply 1
Review Cisco Networking for a $25 gift card