Special care needs to be taken when updating the firmware in a high availability cluster. To avoid synchronization errors and inconsistencies, it is necessary to remove all units from the cluster and update each one individually. After the update, recreate the cluster. Each Barracuda SSL VPN system in a cluster must be on exactly the same firmware version, so plan to update the units at the same time.
Step 1. Remove all units from the cluster
On each system in the cluster, proceed as follows:
- Go to the ADVANCED > Linked Management page and delete the Cluster Shared Secret. You will have to log in again.
- If you are using a Simple High Availability Cluster:
- Navigate to ADVANCED > Linked Management.
- In the Simple High-Availability section, clear the value of the IP address if it exists (you may only need to do this on the first system).
- Log back in.
- Navigate to ADVANCED > Linked Management.
- Delete all entries from the list of clustered systems, except the unit you are logged in to.
Step 2. Update the firmware
Update one unit first to verify that the upgrade applies successfully and the Barracuda SSL VPN is operating as expected. Then update the rest of the systems.
- Go to the ADVANCED > Firmware Update page and download the new firmware.
- Click Apply to update the system.
- After the system reboots, verify that the firmware has been applied successfully and is operating as expected.
Step 3. Recreate the cluster
Choose one unit as the primary unit. All other systems in the cluster will pull the configuration from this unit. Complete the following steps for all units to recreate the cluster.
- Log into the SSL VPN web interface.
- Open the ADVANCED > Linked Management page.
- Enter the Cluster Shared Secret.
- Click Save Changes.
- If the unit is not the primary unit:
- Navigate to ADVANCED > Linked Management.
In the Clustered Systems section enter the IP address of the primary unit and click Add System.
Click Join Cluster.