HP VPN Firewall Appliances High Availability Configuration Guide
88
# Configure track entry 1, and associate it with reaction entry 1 of the NQA test group (with the
administrator admin, and the operation tag test).
[FirewallB] track 1 nqa entry admin test reaction 1
Verifying the configuration
# Display information about the track entry on Firewall A.
[FirewallA] display track all
Track ID: 1
Status: Positive
Duration: 0 days 0 hours 0 minutes 32 seconds
Notification delay: Positive 0, Negative 0 (in seconds)
Reference object:
NQA entry: admin test
Reaction: 1
# Display the routing table of Firewall A.
[FirewallA] display ip routing-table
Routing Tables: Public
Destinations : 10 Routes : 10
Destination/Mask Proto Pre Cost NextHop Interface
10.1.1.0/24 Direct 0 0 10.1.1.1 GE0/2
10.1.1.1/32 Direct 0 0 127.0.0.1 InLoop0
10.2.1.0/24 Static 60 0 10.1.1.2 GE0/2
10.3.1.0/24 Direct 0 0 10.3.1.1 GE0/3
10.3.1.1/32 Direct 0 0 127.0.0.1 InLoop0
20.1.1.0/24 Direct 0 0 20.1.1.1 GE0/1
20.1.1.1/32 Direct 0 0 127.0.0.1 InLoop0
30.1.1.0/24 Static 60 0 10.1.1.2 GE0/2
127.0.0.0/8 Direct 0 0 127.0.0.1 InLoop0
127.0.0.1/32 Direct 0 0 127.0.0.1 InLoop0
The output shows the NQA test result: the master route is available (the status of the track entry is Positive),
and Firewall A forwards packets to 30.1.1.0/24 through Router A.
# Remove the IP address of interface Ethernet 1/1 on Router A.
<RouterA> system-view
[RouterA] interface ethernet 1/1
[RouterA-Ethernet1/1] undo ip address
# Display information about the track entry on Firewall A.
[FirewallA] display track all
Track ID: 1
Status: Negative
Duration: 0 days 0 hours 0 minutes 32 seconds
Notification delay: Positive 0, Negative 0 (in seconds)
Reference object:
NQA entry: admin test
Reaction: 1
# Display the routing table of Firewall A.