Single module to cluster Hello All, I'm upgrading from a single firewall solution to a cluster due to resiliency requirements. I'm comfortable with creating a cluster in FW-1 and enabling cpha on the primary firewall but was looking at ways in which i could minimise downtime. Anyone have any advice from previous experience? The firewalls will be running NGX R60 and as a VRRP cluster (active-passive). I would ideally like to use the physical ip addresses assigned to the existing firewall as VIP addresses and introduce a secondary so that routing tables on devices connecting through the firewall do not have to be changes. Regards Testing-123 |