Lesson 14 Flashcards
Active/active failover requires the use of ______
contexts
In _________failover, the firewalls still alternate their roles so that one unit is active and one is in standby .
active - active
_______ command on the standby firewall to cause failover.
_______ command is used on the active firewall to cause failover.
failover active
no failover active
If the firewall does not receive hello messages ( keep - alives ), after retrying twice 3 consecutive hellos missed (a user - configurable value), then the firewall runs the following tests on that particular interface:
Link Up/Down test
Network Activity test (Arp / broadcast)
The unit poll time - amount of time between hello messages - default is _ second
One
The unit hold time is __ seconds. Sets the time during which a unit must receive a hello message on the failover link, after which the peer unit is declared failed.
15
The interface poll time is _ seconds.
The interface hold time is __ seconds
.
5
25
If a failover occurs, the current standby unit promotes itself to the active role and changes its ____________ on the data interfaces to match those of the primary .
IP and MAC addresses
When stateful failover is used, the following state information is replicated to the standby firewall :
– xlate tables with static and dynamic translations
– TCP and UDP connection tables
– ISAKMP and IPsec security association tables
– System clock and uptime information.
By default, HTTP session information is not replicated. It needs to be enabled manually (use the ___________ command). Also, DHCP leases and routing tables are not replicated.
failover replication http