HP VPN Firewall Appliances High Availability Configuration Guide

132
Failures due to internal error: 0
Failures due to other errors: 0
Packet(s) arrived late: 0
# Display the history records of the SNMP operation.
[Firewall] display nqa history admin test1
NQA entry (admin admin, tag test1) history record(s):
Index Response Status Time
1 50 Timeout 2011-11-22 10:24:41.1
The output shows that Firewall uses 50 milliseconds to receive a response from the SNMP agent.
TCP operation configuration example
Network requirements
As shown in Figure 60, configure a TCP operation to test the time the NQA client uses to establish a TCP
connection to the NQA server on Firewall B.
Figure 60 Network diagram
Configuration procedure
1. Assign each interface an IP address. (Details not shown.)
2. Configure static routes or a routing protocol to make sure the devices can reach each other.
(Details not shown.)
3. Configure Firewall B:
# Enable the NQA server, and configure a listening service to listen on the IP address 10.2.2.2
and TCP port 9000.
<FirewallB> system-view
[FirewallB] nqa server enable
[FirewallB] nqa server tcp-connect 10.2.2.2 9000
4. Configure Firewall A:
# Create a TCP operation.
<FirewallA> system-view
[FirewallA] nqa entry admin test1
[FirewallA-nqa-admin-test1] type tcp
# Configure 10.2.2.2 as the destination IP address and port 9000 as the destination port.
[FirewallA-nqa-admin-test1-tcp] destination ip 10.2.2.2
[FirewallA-nqa-admin-test1-tcp] destination port 9000
# Enable the saving of history records.
[FirewallA-nqa-admin-test1-tcp] history-record enable
[FirewallA-nqa-admin-test1-tcp] quit
# Start the TCP operation.
[FirewallA] nqa schedule admin test1 start-time now lifetime forever