View Single Post
  #1 (permalink)  
Old 2008-05-10
Testing-123 Testing-123 is offline
Member
 
Join Date: 2007-07-27
Posts: 86
Rep Power: 2
Testing-123 has an average reputation (10+)
Default Single module to cluster

Hello All,

I'm upgrading from a single firewall solution to a cluster due to resiliency requirements. I'm comfortable with creating a cluster in FW-1 and enabling cpha on the primary firewall but was looking at ways in which i could minimise downtime.

Anyone have any advice from previous experience?

The firewalls will be running NGX R60 and as a VRRP cluster (active-passive). I would ideally like to use the physical ip addresses assigned to the existing firewall as VIP addresses and introduce a secondary so that routing tables on devices connecting through the firewall do not have to be changes.

Regards
Testing-123
Reply With Quote