08-08-2024 11:55 AM
Is it possible to setup an FTD 2110 cluster that would support VPN and/or Site2Site connections?
Solved! Go to Solution.
08-08-2024 12:02 PM
@Chuck Reimer I assume you mean HA Active/Standby failover pair rather than a cluster? As the 2100 doesn't support clustering, only the 3000, 4000 and 9300 series hardware support clustering.
If Active/Standby failover pair, then yes they support S2S VPN (and remote access VPN) https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/740/management-center-device-config-74/vpn-s2s.html
08-08-2024 12:02 PM
@Chuck Reimer I assume you mean HA Active/Standby failover pair rather than a cluster? As the 2100 doesn't support clustering, only the 3000, 4000 and 9300 series hardware support clustering.
If Active/Standby failover pair, then yes they support S2S VPN (and remote access VPN) https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/740/management-center-device-config-74/vpn-s2s.html
08-08-2024 12:05 PM
fpr 2000 series dont support cluster but only HA active/passive
And yes you can config vpn between HA and other peer' config vpn using active unit IP not standby that only what ypu need.
MHM
08-08-2024 12:06 PM
Hi @Rob Ingram yes sorry HA not clustering. Thanks for help!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide