58-9
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 58 Using the High Availability and Scalability Wizard
Configuring VPN Cluster Load Balancing with the High Availability and Scalability Wizard
Summary
The Summary screen displays the results of the configuration steps that you performed in the previous
wizard screens.
Verify your settings and click Finish to send your configuration to the device. If you are configuring
failover, the configuration is also sent to the failover peer. If you need to change a setting, click Back to
return to the screen that you want to change. Make the change, and click Next until you return to the
Summary screen.
Configuring VPN Cluster Load Balancing with the High
Availability and Scalability Wizard
The following procedure provides a high-level overview for configuring VPN cluster load balancing
using the High Availability and Scalability Wizard. See Accessing the High Availability and Scalability
Wizard, page 58-3, for information about accessing the wizard.
Each step in the procedure corresponds to a wizard screen. Click Next after completing each step, except
for the last one, before proceeding to the next step. Each step also includes a reference to additional
information that you may need to complete the step.
Step 1 In the Configuration Type screen, click Configure VPN Cluster Load Balancing.
See Configuration Type, page 58-5 for more information about this screen.
Step 2 Configure the VPN load balancing settings in the VPN Cluster Load Balancing Configuration screen.
See VPN Cluster Load Balancing Configuration, page 58-9 for more information about this screen.
Step 3 Review your configuration in the Summary screen. If necessary, click Back to return to a previous screen
and make changes.
See Summary, page 58-9 for more information about this screen.
Step 4 Click Finish.
The VPN cluster load balancing configuration is sent to the adaptive security appliance.
VPN Cluster Load Balancing Configuration
If you have a remote-client configuration in which you are using two or more adaptive security
appliances connected to the same network to handle remote sessions, you can configure these devices to
share their session load. This feature is called load balancing, which directs session traffic to the least
loaded device, thereby distributing the load among all devices. Load balancing makes efficient use of
system resources and provides increased performance and system availability.
Use the VPN Cluster Load Balancing Configuration screen to set required parameters for a device to
participate in a load balancing cluster.
Enabling load balancing involves the following:
• Configuring the load-balancing cluster by establishing a common virtual cluster IP address, UDP
port (if necessary), and IPSec shared secret for the cluster. These values are identical for each device
in the cluster.