12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring HA for Firebox X e-Series Devices2 Select the Enable High Availability check box.3 Select the HA1 check box for the interface to enable for High Availability.4 In the Primary Box IP text box, you can change the default IP address if you want. This IP addressshould be from a reserved or unassigned network. This becomes the permanent IP address for thatinterface.5 In the Secondary Box IP text box, type an IP address from the same subnet as the interface withHigh Availability enabled on the active Firebox®.If you do not change the default primary Firebox IP address, do not change the default secondary box IP address.6 If you want to use the second HA interface, select the HA2 check box to enable it.The HA2 interface is optional.7 You can select the interfaces you want to monitor for physical link status. The Firebox monitors theselected interfaces and, if the interface is not active, starts an HA failover. Click the check boxadjacent to the interface name to enable monitoring. Clear the check box adjacent to the interfacename to turn off monitoring of an interface.It is a good idea to monitor all enabled interfaces.8 Use the Group ID value control to identify this HA group on the network. If you use more than oneHA pair on the same network, this number must be different for each pair.9 Click the Yes radio button to encrypt all HA traffic between the Fireboxes. This is usually notnecessary, and uses more resources.orClick the No radio button to not encrypt HA traffic between the Fireboxes.10 (If you selected the Yes radio button) In the Shared Secret field, type a shared secret to encrypt HAtraffic between the Fireboxes. Type the shared secret again in the Confirm field.11 Save this configuration to the active Firebox.12 Close Policy Manager.Configuring the secondary High Availability FireboxThe secondary High Availability Firebox must:• Be the same model as the primary HA Firebox• Have a valid feature keyBefore you enable the secondary Firebox for HA, you must first use the Web Quick Setup Wizard toinstall Fireware® and a basic configuration on the Firebox. When the Web Quick Setup Wizard is complete,put the Firebox on your network.Enabling High AvailabilityAfter the primary and secondary HA Fireboxes are configured:1 Open Firebox System Manager for the Firebox you want to be the secondary HA Firebox.2 Select Tools > High Availability > Enable as Secondary.The Confirm Enable as Secondary warning box appears.<strong>User</strong> <strong>Guide</strong> 345

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!