cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
504
Views
0
Helpful
1
Replies

Replace an ASA Firewall into an Active/Standby Failover Pair

SaikiranM
Community Member

Hi Everyone,

We got ASA 5545 FWs in production (Active-Passive). Current FWs are End of Support. Cisco has sent another set FWs to replace the existing ones.

Need action plane to do this activity with steps with minimal downtime.

Current FWs Details:

ASA Version: 9.14(3)23

ASDM Version 7.18(1)152

1 Reply 1

Add new FW HA inside and outside to old FW HA subnet.

The host use old active Inside IP as gw you can shift this by make dhcp push new fw active to host 

And if there is edge router that have route to host point to old active fw outside shoft it to point to new fw active outside.

This will make downtime as less as possible.