Chapter 41 Device HA
ZyWALL/USG Series User’s Guide
717
Virtual Router IP /
Netmask
This is the master ZyWALL/USG’s (static) IP address and subnet mask for this interface.
If a backup takes over for the master, it uses this IP address. These fields are blank if the
interface is a DHCP client or has no IP settings.
Management IP /
Netmask
This field displays the interface’s management IP address and subnet mask. You can use
this IP address and subnet mask to access the ZyWALL/USG whether it is in master or
backup mode.
Link Status This tells whether the monitored interface’s connection is down or up.
Synchronization Use synchronization to have a backup ZyWALL/USG copy the master ZyWALL/USG’s
configuration, certificates, AV signatures, IDP and application patrol signatures, and
system protect signatures.
Every interface’s management IP address must be in the same subnet as the interface’s
IP address (the virtual router IP address).
Server Address If this ZyWALL/USG is set to backup role, enter the IP address or Fully-Qualified Domain
Name (FQDN) of the ZyWALL/USG from which to get updated configuration. Usually, you
should enter the IP address or FQDN of a virtual router on a secure network.
If this ZyWALL/USG is set to master role, this field displays the ZyWALL/USG’s IP
addresses and/or Fully-Qualified Domain Names (FQDN) through which ZyWALL/USGs in
backup role can get updated configuration from this ZyWALL/USG.
Sync. Now This displays if the ZyWALL/USG is set to use active-passive mode Device HA, the
ZyWALL/USG is in the backup role and Device HA is enabled. Click this to copy the
specified ZyWALL/USG’s configuration.
Server Port If this ZyWALL/USG is set to the backup role, enter the port number to use for Secure
FTP when synchronizing with the specified master ZyWALL/USG.
If this ZyWALL/USG is set to master role, this field displays the ZyWALL/USG’s Secure
FTP port number. Click the Configure link if you need to change the FTP port number.
Every ZyWALL/USG in the virtual router must use the same port number. If the master
ZyWALL/USG changes, you have to manually change this port number in the backups.
Password Enter the password used for verification during synchronization. Every ZyWALL/USG in
the virtual router must use the same password.
If you leave this field blank in the master ZyWALL/USG, no backup ZyWALL/USGs can
synchronize from it.
If you leave this field blank in a backup ZyWALL/USG, it cannot synchronize from the
master ZyWALL/USG.
Retype to Confirm Type the password again here to confirm it.
Auto Synchronize Select this to get the updated configuration automatically from the specified ZyWALL/
USG according to the specified Interval. The first synchronization begins after the
specified Interval; the ZyWALL/USG does not synchronize immediately.
Interval When you select Auto Synchronize, set how often the ZyWALL/USG synchronizes with
the master.
Next Sync Time This appears the next time and date (in hh:mm yyyy-mm-dd format) the ZyWALL/USG
will synchronize with the master.
Apply This appears when the ZyWALL/USG is currently using active-passive mode Device HA.
Click Apply to save your changes back to the ZyWALL/USG.
Reset Click Reset to return the screen to its last-saved settings.
Table 276 Configuration > Device HA > Active-Passive Mode (continued)
LABEL DESCRIPTION