Version 6.8 413 Mediant 2600 E-SBC
User's Manual 25. HA Configuration
25.2 Configuration while HA is Operational
When the devices are operating in HA state, subsequent configuration is as follows:
All configuration, including HA is done on the active device only.
Non-HA configuration on the active device is automatically updated on the redundant
device (through the Maintenance interface).
HA-related configuration on the active device is automatically updated on the
redundant device:
• Maintenance interface:
♦ Modified Maintenance interface address of the active device: this address is
set as the new 'HA Remote Address' value on the redundant device.
♦ Modified 'HA Remote Address' value on the active device: this address is set
as the new Maintenance interface address on the redundant device. This
requires a device reset.
♦ Modifications on all other Maintenance interface parameters (e.g., Default
Gateway and VLAN ID): updated to the Maintenance interface on the
redundant device.
• 'HA Revertive' mode (this requires a device reset).
• 'HA Priority' parameter is set for the active device.
• Modified 'Redundant HA Priority' value is set for the redundant device. This
requires a device reset.
Note: If the HA system is already in Revertive mode and you want to change the
priority of the device, to ensure that system service is maintained and traffic is not
disrupted, it is recommended to set the higher priority to the redundant device and
then reset it. After it synchronizes with the active device, it initiates a switchover and
becomes the new active device (the former active device resets and becomes the
new redundant device).
25.3 Configuring Firewall Allowed Rules
If you add firewall rules in the Firewall Settings page (see ''Configuring Firewall Settings''
on page 139) that block specified traffic, you also need to add rules that ensure traffic
related to the HA feature is allowed. These allowed HA rules include the following:
Keep-alive packets between the HA devices (e.g., rules #1 and #2 in the figure below).
HA control and data packets between the HA devices (e.g., rules #3 and #4 in the
figure below).
HA control and data packets between the HA devices after switchover (e.g., rules #5
and #6 in the figure below). These rules are the same as rules #3 and #4 respectively,
but are required as the TCP source and destination port IDs are not symmetric.
HTTP protocol for file transferring (e.g., Rule #7 in the figure below).
HTTP protocol for file transferring after switchover (e.g., Rule #8 - same as Rule #7 -
in the figure below).