Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We have a cluster of devices behind the pix, sharing the same virtual IP. When there's a failover in the cluster, a gratuitous arp is sent with the new MAC for the device taking over the virtual IP. As packets need to be routed through the pix to the...
Well, we had a problem with the format of the grat ARP sent by our servers (which didn't work with the 6.3.3 ver PIX). Our application developers have since corrected the format and the failover works now.Pls see the previous emails for more details ...
Here's the ref given by a Cisco engineer to prove his point (anyway, we asked our developer who kindly fixed the grat ARP format in about 2 months)-------Hi CM,You misread my email, I quote it here again.sip - IP of itself, smac - MAC of itself,dip -...
It was due to the PIX's tightened security and our ARPs were not in the correct format. Our servers have since been patched to correct the ARP format and the failover works now, even with PIX 6.3.3-According to Cisco the gratuitous arp that is sent b...
Hi,Thanks for your response.yes- clearing the ARP works. We do device failover tests every other day and in the middle of the night. We have an ops person doing it, but this procedure is prone to human error. The best thing would be the ARP table get...