519
High availability and load balancing using clusters
Managing clusters
Managing clusters
The changes that you make on the first cluster member that you log on to are propagated to all other
cluster members, letting them appear as one security gateway, with the same users, network entities,
rules, and all other properties.
After you have completed your changes to the cluster, verify that the changes were propagated to all
cluster members.
In this section, you can find information for:
■
Changing the cluster account password
■
Adding or removing a cluster member
■
■
■
Using stateful failover to maintain cluster connections
Changing the cluster account password
When you create a cluster, a cluster account is automatically added to the cluster configuration for
strictly internal cluster management. This account is an administrator account with a randomly
generated 16-character password. As you add each cluster member, this account is propagated to each
additional cluster member. Although this is an administrator account, it is only for internal cluster
management; you should never log on using this account.
If you change the cluster password, you must log on to each cluster member and make the same
change. All cluster passwords must match.
Note:
Only change the cluster account password when higher security requirements are needed.
Prerequisites
None.
To change the cluster account password
1
In the SGMI, in the left pane, under System, click
Administration
.
2
In the right pane, on the Local Administrators tab, in the table, click
Cluster
, and then click
Properties
.
3
In the Cluster Account Properties dialog box, on the General tab, in the Password text box, type the
new password.
4
In the Confirm Password text box, retype the password.
5
In the Caption text box, type a brief description of the cluster account password.
6
Click
OK
.
7
Optionally, do one of the following:
■
To save your configuration now and activate later, click
Save
.
■
To activate your configuration now, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...