
Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
186
Redundant Firewalls
213455-L, October 2005
Managing through the VRRP interface
If the Nortel Switched Firewalls are connected to the management server through a VRRP
interface, then you may not be able to establish SIC and push the policy.
If you cannot establish SIC and push the policy, use the following procedure:
1.
Use the following CLI command to clear all of the ARP entries on the Management
Server :
arp –d <addr>
.
2.
Use the following CLI command to turn off HA:
/cfg/net/vrrp/ha n/apply
.
3.
Complete the SIC if not in the communicating status.
4.
Complete the SmartDashboard configuration.
5.
Push the policy.
6.
Use the following CLI command to turn on HA:
/cfg/net/vrrp/ha y/apply
.
Synchronizing Nortel Switched Firewalls
Two Switched Firewalls can be synchronized to provide stateful failover of sessions. With
synchronization, open sessions on a failed Switched Firewall are reassigned transparently to
the backup Switched Firewall.
To synchronize two Switched Firewalls you must configure the following:
synchronization
TIP
: Use the CLI (see
Step 2
) and the Check Point SmartDashboard (see
page 136
)
VRRP features (see
Configuring the redundant Switched Firewall on page 129
)
virtual router (see
Configuring the redundant Switched Firewall on page 129
)
Synchronization impairs system performance if traffic includes many short-lived sessions.
Enable synchronization only for services that can benefit from it—such as Telnet— and not for
services such as http.
Содержание 5100 Series Release 2.3.3
Страница 18: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 18 Preface 213455 L October 2005...
Страница 20: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 20 Getting started 213455 L October 2005...
Страница 28: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 28 Introduction 213455 L October 2005...
Страница 90: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 90 Initial setup 213455 L October 2005...
Страница 188: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 188 Redundant Firewalls 213455 L October 2005...
Страница 228: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 228 Applications 213455 L October 2005...
Страница 248: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 248 Basic system management 213455 L October 2005...
Страница 250: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 250 Command reference 213455 L October 2005...
Страница 264: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 264 The Command Line Interface 213455 L October 2005...
Страница 374: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 374 Command reference 213455 L October 2005...
Страница 376: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 376 Appendices 213455 L October 2005...
Страница 406: ...Nortel Switched Firewall 2 3 3 User s Guide and Command Reference 406 Common tasks 213455 L October 2005...