PCNSE
NSE
StrongSwan
What I would do, is too down the standby router, place a policy for all of the client network space to ping the static and VIP address of the router. Make sure connectivity is granted. Than bring up the secondary router and conduct the same test.Did you try the above? Btw ciso HSRP is not load-balancing at all. The HSRP active member is active ad the standby is just that, standing by. If you have access, a issurance of a cisco cli " show stand brief" , would show you who is active. If you have doubts on if HSRP is or is not configured, diag sniffer packet the wire and you should see the HSRP packets. If you don' t see any, than it could be GLBP or VRRP, both of which is supported by cisco routers/switches btw. I would rule out the standby for now, and make sure the active is working and then continue on with your investigation and trouble shooting. Also since HSRP needs adj to each other, the external VLAN should be shared between the 2 cisco IOS. So don' t plug their 2 interfaces up int the firewall directly unless you want more issues to contend with
PCNSE
NSE
StrongSwan
PCNSE
NSE
StrongSwan
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.