32
01-28011-0259-20060210
Fortinet Inc.
High availability installation
Configuring the FortiGate for the Network
High availability installation
This section describes how to install two or more FortiGate-5000 module in an HA
cluster within a FortiGate chassis. HA installation involves three basic steps:
•
Configuring FortiGate-5000 modules for HA operation
•
Connecting the cluster to your networks
•
Installing and configuring the cluster
For information about HA, see the
FortiGate Administration Guide
and the
FortiOS
High Availability technical note
.
Priorities of heartbeat device and monitor priorities
The procedures in this section do not include steps for changing the priorities of
heartbeat devices or for configuring monitor priorities settings. Both of these HA
settings should be configured after the cluster is up and running.
By default, port 9 and port 10 are configured as heartbeat devices. Port 9 and port 10
are only used for HA cluster communication and are not physically accessible. These
interfaces are not visible on the web-based manager, but they are visible on the CLI.
Configuring FortiGate-5000 modules for HA operation
A FortiGate HA cluster consists of two or more FortiGate-5000 module with the same
HA configuration.
This section describes how to configure and add each of the FortiGate-5000 modules
to a cluster for HA operation. The procedures are the same for active-active and
active-passive HA.
•
High availability configuration settings
•
Configuring FortiGate-5000 modules for HA using the web-based manager
•
Configuring FortiGate-5000 modules for HA using the CLI
High availability configuration settings
Use the following table to select the HA configuration settings for the FortiGate-5000
modules in the HA cluster.
Note:
When clustering antivirus firewalls, you must cluster similar modules together, for
example, two or more FortiGate-5002FB2 modules. You cannot cluster one FortiGate-5001SX
and one FortiGate-5002FB2 module together.