12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Manually Controlling High Availability9 (If you selected the Yes radio button) In the Shared Secret field, type a shared secret to encrypt HAtraffic between the Fireboxes. Type the shared secret again in the Confirm field.10 Save this configuration to the active Firebox.11 Close Policy Manager.12 Use a crossover cable to connect the HA1 interface (eth5) on one Firebox to the HA1 interface onthe other Firebox. If HA2 (eth4) is enabled, connect both HA2 interfaces as well.13 Put the secondary unit in safe mode. To do this, turn the Firebox off, and then turn it back on whileyou hold down the up arrow button on the Firebox front panel.Up arrow button14 Start Firebox System Manager and connect to the primary Firebox.15 Select Tools > High Availability > Synchronize Configuration. When prompted, type theconfiguration passphrase.You see a message that says High Availability is enabled.Manually Controlling High AvailabilityAlthough High Availability operations usually occur automatically, you can do some of the functionsmanually.Forcing a failoverYou can cause a failover to occur. The standby system becomes the active one immediately.From Firebox® System Manager, select Tools > High Availability > Force Failover.Synchronizing the configurationYou must synchronize the configuration when one Firebox configuration changes while the other is disconnectedfrom the HA peer or turned off.From Firebox System Manager, select Tools > High Availability > Synchronize Configuration.Restarting the peerWhen you connect to an HA configuration, you communicate only to the active Firebox. To restart thepeer Firebox, you must send the command from the active Firebox:From Firebox System Manager, select Tools > High Availability > Restart Peer.NoteWhen the Firebox is in a high CPU or traffic condition and you use Firebox System Manager to controlHA operations, you can get an incorrect “time-out” message. In this case, the operation could havecompleted, and it is possible the time-out message is not correct.<strong>User</strong> <strong>Guide</strong> 347

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!