B-20
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Appendix B Sample Configurations
Example 7: Cable-Based Active/Standby Failover (Routed Mode)
access-group outacl in interface outside
route outside 0.0.0.0 0.0.0.0 16.142.10.1 1
Example 7: Cable-Based Active/Standby Failover (Routed Mode)
Figure B-6
shows the network diagram for a failover configuration using a serial Failover cable. This
configuration is only available on the PIX security appliance.
Figure B-6
Cable-Based Failover Configuration
The following are the typical commands in a cable-based failover configuration.
enable password myenablepassword
passwd mypassword
hostname pixfirewall
asdm image flash:/asdm.bin
boot system flash:/image.bin
interface Ethernet0
nameif outside
security-level 0
speed 100
duplex full
ip address 209.165.201.1 255.255.255.224 standby 209.165.201.2
no shutdown
interface Ethernet1
nameif inside
security-level 100
speed 100
duplex full
ip address 192.168.2.1 255.255.255.0 standby 192.168.2.2
no shutdown
209.165.201.4
192.168.253.1
192.168.253.2
192.168.2.5
192.168.2.1
209.165.201.1
209.165.201.2
192.168.2.2
Switch
Switch
state
Serial Failover Cable
outside
inside
PAT: 209.165.201.3
Primary Unit
Secondary Unit
Static: 209.165.201.5
Web Server
126995
Internet
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......