Cisco 7604 Configuration Manual page 652

Catalyst 6500 series switch and cisco 7600 series router firewall services module configuration guide using the cli
Hide thumbs Also See for 7604:
Table of Contents

Advertisement

Failover Example Configurations
System Context Configuration (Primary FWSM—Example 8)
The failover groups and the failover and Stateful Failover VLANs are configured in the system context.
hostname cisco-primary
enable password farscape
password crichton
interface vlan 4
interface vlan 5
interface vlan 6
!The vlan 10 and 11 interfaces are created when you enter the failover lan interface and
failover link commands.
interface vlan 10
interface vlan 11
interface vlan 201
interface vlan 202
failover
failover lan unit primary
failover lan interface faillink vlan 10
failover key MySecretKey
failover link statelink vlan 11
failover interface ip faillink 192.168.1.1 255.255.255.0 standby 192.168.1.2
failover interface ip statelink 192.168.2.1 255.255.255.0 standby 192.168.2.2
failover group 1
failover group 2
admin-context contexta
context contexta
context contextb
context contextc
Context A Configuration (Primary FWSM—Example 8)
To change to a context configuration, enter the changeto context name command. To change back to the
system, enter changeto system.
Context A is the admin context. In this example the admin context contains only one interface, the inside
interface, for administrative access. Because the context contains only one interface, you cannot use
Telnet to access the FWSM through the interface. Telnet access is not permitted to the lowest security
level interface in a context, and because Context A has only one interface, it is the lowest level interface
by default. Instead, you must define an SSH connection to manage the FWSM through this interface.
Catalyst 6500 Series Switch and Cisco 7600 Series Router Firewall Services Module Configuration Guide using ASDM
B-28
description LAN Failover interface
description STATE Failover interface
preempt
replication http
interface-policy 50%
secondary
preempt
replication http
interface-policy 50%
description administrative context
allocate-interface vlan4
config-url disk://contexta.cfg
join-failover-group 1
allocate-interface vlan201
allocate-interface vlan5
config-url ftp://admin:passw0rd@10.0.3.16/contextb.cfg
join-failover-group 1
allocate-interface vlan202
allocate-interface vlan6
config-url ftp://admin:passw0rd@10.0.3.16/contextc.cfg
join-failover-group 2
Appendix B
Sample Configurations
OL-20748-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

7609-s76137606-sCatalyst 6500 series7600 series

Table of Contents