This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG HA Active-Active mode vMware Primary IP not working

Hello,

 

I managed to setup my firewalls in Active-Active mode but the primary ip doesn't respond to either ping or https. I can only connect to the auxiliary FW using the secondary IP but it is on read-only mode.

 

Environment details.

vMware ESXI 6.7

Cisco L3 router 37xx

Sophos XG 17.5 GA

 

Thanks in advance.



This thread was automatically locked due to age.
Parents Reply
  • Hi Super,

    This is required because the primary will own/use the virtual mac for the cluster ports and the secondary uses the normal mac address. 

    Without MAC spoofing (VMware has its equivalent to this), the hypervisor will drop all traffic to the host, if you failover you will see the same behavior for the new primary (now the new secondary will be reachable).  

Children
No Data