Firewall Wizards mailing list archives

RE: RE: PIX Version 6.1.3


From: "Strydom, Willie" <WStrydom () fnb co za>
Date: Thu, 24 Apr 2003 13:25:54 +0200

Hi All

Just some feedback. 
I saw both Boxen "thought" they were "Primary" ie:
"failover lan unit primary"

I wr erased the secondary, reloaded, and reconfigured the failover,
When I entered the command :
"failover lan interface lanfail" 
I get a responce that the mtu size must be  >= 576 (but default was 1500)
It didnt take my "failover lan interface lanfail" command
I entered "mtu lanfail 576"
I had to reenter the command then only would it take it and the:
"failover lan enable" command. 

Failover is now kewl, but the question is still why didnt the command wanna
take? Will statefull failover now work...

See quote from Cisco:

 For PIX Firewall software version 6.2, MTU size must be greater than or
equal to 1500 for the Stateful Failover link and greater than or equal to
576 for the LAN-based failover link.

cheers!



<Previous post:>

Sent: 22 April 2003 08:05
To: 'firewall-wizards () honor icsalabs com'
Subject: RE: [fw-wiz] RE: PIX Version 6.1.3


I sent it to two test boxen I use with LAN failover. (was 6.2.2)
Rebooted them, and both came up as Primary. After about 3 hours over the
phone, (our Lab is not on-site) downing one then the other and various
configs I told the support guys to down the secondary box. I'll be going
there this week with my hyperterm to see what's up.

I see there is no command reference on it yet. I tried here..
http://www.cisco.com/en/US/partner/products/sw/secursw/ps2120/products_comma
nd_references_books_list.html

maybe LAN failover works differently on 6.3 than 6.2?

Cheers

-----Original Message-----
From: Ahmed, Balal 
Sent: 17 April 2003 10:20
To: firewall-wizards () honor icsalabs com
Subject: PIX Version 6.1.3


All, 

Cisco released 6.1.3 a few weeks ago. Has anyone had a chance to install it
and test it out yet ?


Regards

Balal
</previous post>

___________________________________________________________________________________________________


The views expressed in this email are, unless otherwise stated, those of the author and not those
of the FirstRand Banking Group or its management.  The information in this e-mail is confidential
and is intended solely for the addressee. Access to this e-mail by anyone else is unauthorised. 
If you are not the intended recipient, any disclosure, copying, distribution or any action taken or 
omitted in reliance on this, is prohibited and may be unlawful.
Whilst all reasonable steps are taken to ensure the accuracy and integrity of information and data 
transmitted electronically and to preserve the confidentiality thereof, no liability or 
responsibility whatsoever is accepted if information or data is, for whatever reason, corrupted 
or does not reach its intended destination.

                               ________________________________
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: