It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda NextGen Firewall X

How to configure Alternative HA IP and private uplink

  • Type: Knowledgebase
  • Date changed: one year ago
Solution #00005163
This solution replies to:
- NG Firewall firmware versions 4.2.x, 5.0.x, 5.2.x
- netfence firmware versions 4.2.x


This article describes how to set up Alternative HA IP addresses and private uplink for synchronisation processes between two boxes forming a High Availability system.


For an illustrated example setup, refer to the Administration Guidance, Chapter 'Setting up a HA System'.


Proceed as follows to set up Alternative HA IP and private uplink:


Step 1
Provide exclusive network devices for the private uplink. In order to circumvent avoidable sources of error connect the devices with a cross cable. Configure a 2-bit network as uplink subnet.

Step 2
To define Alternative HA IP addresses browse to "Config" > "Box" > "Network" > "Networks" and insert a new "Additional Networks" (only visible in the "Advanced View"). Following settings are required.


 "Response to Ping" = "yes",  "Management IP" = "yes"

Step 3
To activate the HA private uplink, browse to "Config" > "Box" > "Infrastructure Services" > "Control" > "Monitoring Setup".


In the "Translated HA IP" list, define the "Translated HA IP" and the "Alternative HA IP". The "Translated HA IP" is the original "Management IP" and the "Alternative HA IP" ist the "Additional Local Network IP" of the Box.










  ...... "Management IP" of the primary Box .... .."Management IP" of the secondary Box .... "Additonal Local Network IP" of the primary Box .... "Additonal Local Network IP" of the secondary Box

You may optionally use the Routing configuration area to activate the private uplink. Refer to the netfence Administration Guidance, Chapter "Setting up a HA System" for details.


Step 4

To grant administrative access rights for Alternative HA IP usage browse to "Config" > "Box" > "Administrative Settings" and insert the Alternative HA IP addresses into the ACL list.

Link to This Page: