Firewall-1

[FW-1] HA with EDGE, Problems with connectivity

Subject: [FW-1] HA with EDGE, Problems with connectivity
From: Michael Schwartzkopff <ccse_fw1 AT MULTINET DOT DE>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 29 Mar 2006 11:34:39 +0200
Hi all,

I configured two EDGE boxes exactly like in the manuals for HA. Two dedicated 
IP addresses + one virtual inside, one IP on the outside. On the passive box 
I enabled "do not connect to internet when in passive mode".

Ping runs good and if I pull the internet plug of the active box I see the 
failover in the logs and the ping goes on.

If I try the same with a long download disconnecting the internet from the 
active box it breaks the download. I also see according drops in the logfile 
of the standby (now active) box.

It seems that the state tables are not synchronized on the boxes.

Sync is configured via DMZ interfaces on both machines (two dedicated IPs and 
one virtual again).

Any idea what went wrong? Thank for any hints.

Firmaware version: 5.0.94

Michael.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>