Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > Cisco > Stateful NAT failover = yes. Stateful CBAC failover = ????

Reply
Thread Tools

Stateful NAT failover = yes. Stateful CBAC failover = ????

 
 
Alec Waters
Guest
Posts: n/a
 
      06-09-2004
Hi all,

Stateful NAT failover is described here:

http://www.cisco.com/en/US/products/...0801fce09.html

If you have a setup like the one shown in Figure 1, things will fall
down if the routers in question are running the IOS firewall feature
set. The dynamic ACL entries added by CBAC on the "Primary NAT" router
will not have been replicated to the "Backup NAT" router, and the return
traffic will be dropped (even though a NAT translation exists for it).

Is there anything like stateful CBAC failover, in a similar vein to the
above? Or some other way to synchronize dynamic ACL entries between two
IOS Firewall routers?

thanks a lot,
alec
--

 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
cisco ASA/PIX failover and VPN, failover IP access problem Pit Cisco 0 08-27-2008 03:34 PM
Stateful Failover bensonlei@yahoo.com.hk Cisco 0 06-06-2007 09:51 AM
cbac, nat & dialer issues Eric Masson Cisco 1 01-17-2006 09:55 AM
PIX Stateful Failover Bob the Builder Cisco 5 01-07-2005 06:26 PM
CBAC & NAT & Access Lists mclaughlinj Cisco 1 05-10-2004 09:23 PM



Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57