Technical data
128 ServerIron ADX Firewall Load Balancing Guide
53-1002436-01
Configuring IronClad Layer 3 FWLB for NAT
5
DRAFT: BROCADE CONFIDENTIAL
Configuring the ServerIron ADX priority
If you are configuring the ServerIron ADX for IronClad FWLB, you must specify the priority for the 
firewalls within the firewall group. The priority determines which of the partner ServerIron ADXs that 
are configured together for IronClad FWLB is the default active ServerIron ADX for the firewalls 
within the group.
You can specify a priority from 0 through 255. The ServerIron ADX with the higher priority is the 
default active ServerIron ADX for the firewalls within the firewall group.
NOTE
If you specify 0, the CLI removes the priority. When you save the configuration to the startup-config 
file, the sym-priority command is removed. You cannot remove the priority using the no sym-priority 
command. 
To configure a ServerIron ADX to be the default active ServerIron ADX for the firewalls in group 2, 
enter the following commands.
Commands for active ServerIron ADX A (external active)
SI-ActiveA(config)# server fw-group 2 
SI-ActiveA(config-fw-2)# sym-priority 255
Commands for standby ServerIron ADX A (external standby)
To configure another ServerIron ADX to not be the default active ServerIron ADX for the firewalls in 
group 2, enter the following commands.
SI-StandbyA(config)# server fw-group 2 
SI-StandbyA(config-fw-2)# sym-priority 1
Commands for active ServerIron ADX B (internal active)
SI-ActiveB(config)# server fw-group 2 
SI-ActiveB(config-fw-2)# sym-priority 255
Commands for standby ServerIron ADX B (internal standby)
SI-StandbyB(config)# server fw-group 2 
SI-StandbyB(config-fw-2)# sym-priority 1
Syntax: [no] sym-priority <num>
The <num> variable can be from 0 through 255.
Preventing load balancing of the NAT addresses
To prevent load balancing of the NAT address when configuring an IronClad FWLB for Layer 3 NAT 
firewalls, refer to 
“Preventing load balancing of the NAT addresses” on page 118.










