98
01-28008-0013-20050204
Fortinet Inc.
HA
System Config
Monitor priorities
Enable or disable monitoring a FortiGate interface to verify that the interface is
functioning properly and connected to its network. If a monitored interface fails or is
disconnected from its network the interface leaves the cluster. The cluster reroutes
the traffic being processed by that interface to the same interface of another cluster
unit that still has a connection to the network. This other cluster unit becomes the new
primary cluster unit.
If you can re-establish traffic flow through the interface (for example, if you re-connect
a disconnected network cable) the interface rejoins the cluster. If Override Master is
enabled for this FortiGate unit (see
“Override Master” on page 95
), this FortiGate unit
becomes the primary unit in the cluster again.
Increase the priority of interfaces connected to higher priority networks or networks
with more traffic. The monitor priority range is 0 to 512.
If a high priority interface on the primary unit fails, one of the other cluster units
becomes the new primary unit to provide better service to the high priority network.
If a low priority interface fails on one cluster unit and a high priority interface fails on
another cluster unit, a unit in the cluster with a working connection to the high priority
interface would, if it becomes necessary to negotiate a new primary unit, be selected
instead of a unit with a working connection to the low priority interface.
•
Configuring an HA cluster
•
Managing an HA cluster
Configuring an HA cluster
Use the following procedures to create an HA cluster consisting of two or more
FortiGate units. These procedures describe how to configure each of the FortiGate
units for HA operation and then how to connect the FortiGate units to form a cluster.
Once the cluster is connected you can configure it in the same way as you would
configure a standalone FortiGate unit.
•
To configure a FortiGate unit for HA operation
•
To connect a FortiGate HA cluster
•
To add a new unit to a functioning cluster
•
To configure weighted-round-robin weights
•
To switch between load balancing virus scanning sessions and all sessions
To configure a FortiGate unit for HA operation
Each FortiGate unit in the cluster must have the same HA configuration. Use the
following procedure to configure each FortiGate unit for HA operation.
Note:
Only monitor interfaces that are connected to networks.
Note:
You can monitor physical interfaces, but not VLAN subinterfaces.
Содержание FortiGate FortiGate-5020
Страница 86: ...86 01 28008 0013 20050204 Fortinet Inc Dynamic IP System DHCP ...
Страница 118: ...118 01 28008 0013 20050204 Fortinet Inc FortiManager System Config ...
Страница 254: ...254 01 28008 0013 20050204 Fortinet Inc CLI configuration User ...
Страница 318: ...318 01 28008 0013 20050204 Fortinet Inc CLI configuration Antivirus ...
Страница 350: ...350 01 28008 0013 20050204 Fortinet Inc Using Perl regular expressions Spam filter ...
Страница 370: ...370 01 28008 0013 20050204 Fortinet Inc CLI configuration Log Report ...
Страница 382: ...382 01 28008 0013 20050204 Fortinet Inc Glossary ...
Страница 402: ...402 01 28008 0013 20050204 Fortinet Inc Index ...