cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
413
Views
0
Helpful
2
Replies

Failover vlan interface

gerard.oconnor
Level 1
Level 1

Hi,

I am trying to setup failover on a pair of Pix 515E.

One interface is setup to be a vlan interface. There logical interfaces are defined from this interface. I have setup failover ip addresses for each of the logical interfaces, however I getting the following message from the pix when I have connect to it via ssh:

WARNING, missing ip or failover address on VPN interface

The VPN interface is the name of the physical interface.

Do I need to assign the physical interface an ip address for failover ?

Thanks,

Gerard.

2 Replies 2

nkhawaja
Cisco Employee
Cisco Employee

could we see the config.

Hi,

Sorry for taking so long to reply. This is a snippet of the config:

interface ethernet4 100full

interface ethernet4 vlan5 physical

interface ethernet4 vlan2 logical

interface ethernet4 vlan3 logical

interface ethernet4 vlan4 logical

nameif ethernet4 vlan-vpn security12

nameif vlan2 dmz-vlan-vpn1 security8

nameif vlan3 dmz-vlan-vpn2 security10

nameif vlan4 dmz-vlan-vpn3 security16

:

no ip address vlan-vpn

ip address dmz-vlan-vpn1 10.1.10.1 255.255.255.0

ip address dmz-vlan-vpn2 10.1.20.1 255.255.255.0

ip address dmz-vlan-vpn3 10.1.30.1 255.255.255.0

:

failover

:

failover timeout 0:00:00

failover poll 15

failover ip address failover 192.168.9.10

no failover ip address vlan-vpn

failover ip address dmz-vlan-vpn1 10.1.10.2

failover ip address dmz-vlan-vpn2 10.1.20.2

failover ip address dmz-vlan-vpn3 10.1.30.2

failover link failover

Thanks,

Gerard.