Firewall Wizards mailing list archives

Re: PIX stateful failover and crossover cables


From: Dave Breiland <superdave () dynamicis com>
Date: Wed, 19 Jan 2005 09:12:49 -0800

I sent the link a minute ago, but the quote resembling your question is...

"A dedicated LAN interface and a dedicated switch (or VLAN) is required to implement LAN-based failover. You cannot use a crossover Ethernet cable to connect the two PIX security appliances."

HOWEVER... I know that I have used crossover cables several times... and know many people who feel it is acceptable. It may not be best practice though.

Dave



mkrbeck () hushmail com wrote:

I recall reading a detailed technical paper recently on the cisco site where it was recommended that pix stateful interface traffic always be passed thru a switch (as opposed to a x-over cable) between a pair of pix chassis, regardless of whether the deployment is serial cable or LAN failover, however I cannot find it again, would anyone have a link for it or a copy ??

thanks
Martyn Beck



Concerned about your privacy? Follow this link to get
secure FREE email: http://www.hushmail.com/?l=2

Free, ultra-private instant messaging with Hush Messenger
http://www.hushmail.com/services-messenger?l=434

Promote security and make money with the Hushmail Affiliate Program: http://www.hushmail.com/about-affiliate?l=427
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: