- CheckMates
- :
- Products
- :
- Quantum
- :
- Threat Prevention
- :
- VRRP with R80.10 - Interfaces in backup mode
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
VRRP with R80.10 - Interfaces in backup mode
Hi Folks,
I am facing a weird issue with R80.10 Cluster in VRRP.
I have currently have only one firewall configured in VRRP cluster and management server is away one hop; that is on L3 switch.
So my topology is INTERNET-----Firewall--> L3-->Mgmt server.
I then upgraded the firewall to R80.30 however after upgradation obviously it came up with Initial Policy since it could not fetch the policy from Mgmt server however when I decided to install policy it couldnt connect to Mgmt server. When I investigated I found that all the interfaces [though its single appliance in cluster] were in backup mode. And since no policy was installed HA module wasnt started.
I guess since being a single appliance it by default should come up as Primary, correct?
Any clue or any other alternative by which appliance can load last installed policy?
Blason R
CCSA,CCSE,CCCS
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
set vrrp monitor-firewall off
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I see does that mean since it does not have any policy it went in backup mode? And shutting down the monitor-firewall will make in Primary even if the policy is set as Initial?
Blason R
CCSA,CCSE,CCCS
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As you only have one member ithis setting does not make sense to check. you always need to be in master mode with this member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Oh ok - So, setting up firewall mode off makes sense, right?
Blason R
CCSA,CCSE,CCCS
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
