07-21-2005 02:14 AM - edited 03-09-2019 11:54 AM
Hi,
I am trying to setup failover on a pair of Pix 515E.
One interface is setup to be a vlan interface. There logical interfaces are defined from this interface. I have setup failover ip addresses for each of the logical interfaces, however I getting the following message from the pix when I have connect to it via ssh:
WARNING, missing ip or failover address on VPN interface
The VPN interface is the name of the physical interface.
Do I need to assign the physical interface an ip address for failover ?
Thanks,
Gerard.
07-25-2005 09:06 PM
could we see the config.
08-02-2005 10:07 AM
Hi,
Sorry for taking so long to reply. This is a snippet of the config:
interface ethernet4 100full
interface ethernet4 vlan5 physical
interface ethernet4 vlan2 logical
interface ethernet4 vlan3 logical
interface ethernet4 vlan4 logical
nameif ethernet4 vlan-vpn security12
nameif vlan2 dmz-vlan-vpn1 security8
nameif vlan3 dmz-vlan-vpn2 security10
nameif vlan4 dmz-vlan-vpn3 security16
:
no ip address vlan-vpn
ip address dmz-vlan-vpn1 10.1.10.1 255.255.255.0
ip address dmz-vlan-vpn2 10.1.20.1 255.255.255.0
ip address dmz-vlan-vpn3 10.1.30.1 255.255.255.0
:
failover
:
failover timeout 0:00:00
failover poll 15
failover ip address failover 192.168.9.10
no failover ip address vlan-vpn
failover ip address dmz-vlan-vpn1 10.1.10.2
failover ip address dmz-vlan-vpn2 10.1.20.2
failover ip address dmz-vlan-vpn3 10.1.30.2
failover link failover
Thanks,
Gerard.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: