HP VPN Firewall Appliances High Availability Configuration Guide
99
Collaboration group configuration example
Network requirements
As shown in Figure 50, LAN users Host A, Host B, and Host C access the Internet through Firewall A.
Firewall B serves as a backup for Firewall A. Configure Firewall A so that when the link connecting Device
and Firewall A goes down, the traffic rapidly switches from Firewall A to Firewall B.
Figure 50 Network diagram
Configuration procedure
# Assign GigabitEthernet 0/1 and GigabitEthernet 0/2 on Firewall A to collaboration group 1.
<FirewallA> system-view
[FirewallA] interface gigabitethernet 0/1
[FirewallA-GigabitEthernet0/1] link-group 1
[FirewallA-GigabitEthernet0/1] quit
[FirewallA] interface gigabitethernet 0/2
[FirewallA-GigabitEtherne0/2] link-group 1
[FirewallA-GigabitEtherne0/2] quit
Verifying the configuration
# Remove the cable connecting Device to GigabitEthernet 0/1 on Firewall A, and check the status of
collaboration group 1 and its member ports. The status of GigabitEthernet 0/1 is down, and that of
GigabitEthernet 0/2 is linkgroup-down.
[FirewallA] display link-group
Group Number: 1 Group Status: Down
Interface Information:
Interface Name Interface Status
GigabitEthernet0/1 Down
GigabitEthernet0/2 Linkgroup-down