Firewall Wizards mailing list archives

Re: Implementing PIX Failover over a Fibre link?


From: John Adams <jna () retina net>
Date: Mon, 18 Sep 2000 16:39:09 -0400 (EDT)


All of these failover issues are yet another reason to stop using the PIX.
We're considering going to multiple Lucent Bricks with a alteon box on
each side of the bricks. This eliminates the failver timeout/delay and
closing of open connections should a firewall die. It's far more expensive
though, and it's too bad the prices of the Bricks are not more competitive
with the dual pix solution.

-john

On Sun, 17 Sep 2000, Robert Collins wrote:

<..>
On the other hand, you could use native failover and extend the failover
cable via modems, but this is not officially supported by Cisco. As you
will definitely need some dynamic routing in the setup, I would much
prefer
a clean routing-based solution.

I recall reading somewhere in the PIX documentation that "serial
extenders" - including modems - wil not work with the failover cable.

Rob


_______________________________________________
Firewall-wizards mailing list
Firewall-wizards () nfr net
http://www.nfr.net/mailman/listinfo/firewall-wizards


--
J. Adams                                        http://www.retina.net/~jna
You are supposed to be a consumer, a black hole for goods, advertising and
content. They only want to allocate enough upstream bandwidth for
10,000,000 buy buttons. Producing or sharing information is a subversive
act and will not be tolerated. -anonymous coward on /.



_______________________________________________
Firewall-wizards mailing list
Firewall-wizards () nfr net
http://www.nfr.net/mailman/listinfo/firewall-wizards


Current thread: