Cisco Systems ASA 5580 Network Router User Manual


  Open as PDF
of 2086
 
66-9
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 66 Configuring Active/Standby Failover
Configuring Active/Standby Failover
f. (Optional) Enable HTTP replication by checking the Enable HTTP Replication check box. This
enables Stateful Failover to copy active HTTP sessions to the standby firewall. If you do not allow
HTTP replication, then HTTP connections are disconnected in the event of a failover.
Step 11 Click Apply.
The configuration is saved to the devices in the failover pair.
Configuring Interface Standby Addresses
Configuring standby IP address in ASDM changes depending upon the mode in which the unit is
operating. This section includes the following topics:
Configuring Interface Standby Addresses in Routed Firewall Mode, page 66-9
Configuring the Management Interface Standby Address in Transparent Firewall Mode, page 66-9
Configuring Interface Standby Addresses in Routed Firewall Mode
To configure a standby address for each interface on the ASA, perform the following steps:
Step 1 Choose the Configuration > Device Management > High Availability > Failover > Interfaces tab.
A list of configured interfaces appears. The IP address for each interface appears in the Active IP
Address column. If configured, the standby IP address for the interface appears in the Standby IP address
column. The failover interface and Stateful failover interface do not display IP address; you cannot
change those address from this tab.
Step 2 For each interface that does not have a standby IP address, double-click the Standby IP Address field and
do one of the following:
Click the ... button and select an IP address from the list.
Type an IP address into the field. The address can be an IPv4 or an IPv6 address.
You can also specify whether or not the interface is monitored from this tab. For more information about
configuring interface monitoring, see the “Disabling and Enabling Interface Monitoring” section on
page 66-10.
Configuring the Management Interface Standby Address in Transparent Firewall Mode
If you are in multiple context mode, you must perform this procedure in each context.
To configure the management interface standby address on the ASA, perform the following steps:
Step 1 Choose the Configuration > Device Management > High Availability > Failover > Interfaces tab.
A list of configured interfaces appears. Only the Management interface shows an IP address.
Step 2 For the Management interface that does not have a standby IP address, double-click the Standby IP
Address field and do one of the following:
Click the ... button and select an IP address from the list.