1 00:00:06,470 --> 00:00:08,570 Hello and welcome to this lecture. 2 00:00:08,570 --> 00:00:14,420 So now with the infrastructure up and running we are ready to configure the H.A. or high availability 3 00:00:14,420 --> 00:00:15,380 cluster. 4 00:00:15,380 --> 00:00:16,650 So let's see how we do that. 5 00:00:16,670 --> 00:00:18,350 It's actually very simple. 6 00:00:18,350 --> 00:00:20,500 When when you know how to do it. 7 00:00:20,570 --> 00:00:29,810 So first go to system then navigate to H.A. and if you go through for any documentation you will see 8 00:00:29,810 --> 00:00:35,110 that there are some strict requirements that need to be to be followed. 9 00:00:35,120 --> 00:00:44,300 So first of all instead of standalone I will select active passive and then I should have this priority 10 00:00:44,330 --> 00:00:46,190 let's say bigger than the other one. 11 00:00:46,280 --> 00:00:51,500 So I will say 250 and the other one I don't know 100 or something like that. 12 00:00:51,530 --> 00:00:55,310 Now in terms of requirements I should define a group name. 13 00:00:55,310 --> 00:01:02,780 So I will name it H.A. and define also a password and I will click this I in order to be visible. 14 00:01:02,780 --> 00:01:07,790 So let's say footnote and also hard with interfaces. 15 00:01:07,790 --> 00:01:11,930 Remember we have configured ingenious three to have port three and four. 16 00:01:12,470 --> 00:01:15,670 So I'm now clicking on the plus sign selecting. 17 00:01:15,670 --> 00:01:19,900 Also port three and also very important. 18 00:01:19,910 --> 00:01:29,090 We have to have the same heartbeat interface priority and not basically not all values are good. 19 00:01:29,090 --> 00:01:35,790 So I'm clicking this and putting exactly 50 for both of them at this moment. 20 00:01:35,810 --> 00:01:37,240 I will click OK. 21 00:01:40,210 --> 00:01:48,310 And wait for the firewall to initiate and appear in the AK. 22 00:01:48,330 --> 00:01:55,560 So now basically it's transforming self from standalone from the standalone mode going to active passive 23 00:01:56,520 --> 00:02:00,060 waiting for cluster data. 24 00:02:00,060 --> 00:02:03,360 Now it says connection to the 40 gate was lost temporarily. 25 00:02:03,390 --> 00:02:06,930 You may need to refresh the current page so I'll click refresh 26 00:02:12,030 --> 00:02:19,950 and here it is our first footnote firewall the 40 gate VM 64 in this case with a priority of 250. 27 00:02:19,950 --> 00:02:23,610 This is the hostname very important serial number. 28 00:02:23,640 --> 00:02:27,960 The role is master uptime and a number of sessions and throughput. 29 00:02:28,620 --> 00:02:35,530 So at this point we should move to the second one and configure to be the same in the same HP cluster. 30 00:02:35,550 --> 00:02:42,810 So if I ping now one end to that 16 saved up 100 up to five 3 it will respond. 31 00:02:42,810 --> 00:02:44,180 So this is the second gate. 32 00:02:44,640 --> 00:02:50,220 But immediately immediately after I configure it to be part of the same age closer remember we have 33 00:02:50,220 --> 00:02:52,390 talked about it in a previous lecture. 34 00:02:52,440 --> 00:02:57,040 It will not respond to this IP so configuration will get synchronized. 35 00:02:57,210 --> 00:03:04,050 And as soon as it's needed it will take over the master role in order to forward traffic from the land 36 00:03:04,110 --> 00:03:07,640 to the Internet and back and I will now log in. 37 00:03:07,980 --> 00:03:08,670 So admin 38 00:03:18,300 --> 00:03:19,590 so here is the interface. 39 00:03:19,590 --> 00:03:25,310 We will now navigate to system then go to H.A. 40 00:03:29,080 --> 00:03:32,600 And now let's do the same for this second frigate firewall. 41 00:03:32,750 --> 00:03:36,980 So instead of standalone we will change it to active passive 42 00:03:40,810 --> 00:03:45,310 and let's say well the device proceeds more than the other one so it's fine. 43 00:03:45,820 --> 00:03:49,440 Let's say for the group named the same H.A.. 44 00:03:49,870 --> 00:03:52,930 Change the password to be the same again. 45 00:03:52,930 --> 00:03:57,330 I have used the eye to see that I am typing correctly so fortunate. 46 00:03:57,820 --> 00:04:00,910 Add another heartbeat interface here. 47 00:04:00,910 --> 00:04:08,410 So port three now said the priority of port three to be the same like 50 48 00:04:11,520 --> 00:04:12,830 so using the keyboard. 49 00:04:12,830 --> 00:04:20,860 Now to be exactly on 50 and now I will click OK. 50 00:04:21,060 --> 00:04:28,260 It should now not respond once it once it joins the cluster we should now not respond. 51 00:04:28,770 --> 00:04:30,180 When I tried to ping it 52 00:04:33,700 --> 00:04:34,920 so request time out. 53 00:04:34,980 --> 00:04:37,230 Let's go now to the first frigate faro 54 00:04:40,070 --> 00:04:44,460 and now let's do a refresh. 55 00:04:44,530 --> 00:04:45,280 Here it is. 56 00:04:45,820 --> 00:04:48,000 So now we have a master. 57 00:04:48,070 --> 00:04:53,940 This is the master role and we have also a slave priority 250 the configured priority. 58 00:04:54,070 --> 00:04:56,670 And the other one it's one hundred and twenty eight. 59 00:04:57,370 --> 00:05:01,300 So you're certain you are about to time out only extend the session. 60 00:05:01,800 --> 00:05:02,450 So again. 61 00:05:02,500 --> 00:05:05,720 So we have the green tech two hundred and fifty. 62 00:05:05,740 --> 00:05:06,760 This is the priority. 63 00:05:06,760 --> 00:05:11,960 The other default 1 128 48 1 the hostname and you. 64 00:05:12,100 --> 00:05:17,940 And this host names are very important as in the next lecture we will do the failover. 65 00:05:17,950 --> 00:05:23,890 So I will power off the first 48 in order for the for the traffic to go through 48 2. 66 00:05:23,950 --> 00:05:31,330 And again this these host names will be handy because we will see here when connecting to this IP address. 67 00:05:31,330 --> 00:05:40,390 So 2 5 4 that it will say for gate 2 meaning that the second 48 will take over the mass roll and forward 68 00:05:40,390 --> 00:05:44,930 traffic to the Internet and back off the line users. 69 00:05:45,250 --> 00:05:49,700 So thank you for your time and see you in the next lecture.