204
Command syntax pattern
config system ha
set <keyword> <variable>
end
config system ha
unset <keyword>
end
get system ha
show system ha
system ha command keywords and variables
Keywords &
Variables
Description
Default
arps <arp_integer>
Set the number of gratuitous ARP packets sent by the primary
unit. Gratuitous ARP packets aresent when a cluster unit
becomes a primary unit. The gratuitous ARP plackets
configureconnected networks to associate the cluster virtual
MAC address with the cluster IP address. The range is 1 to 16
gratuitous ARP packets. Normally you would not need to
change thenumber of gratuitious ARP packets.
3
authentication {disable
| enable}
Enable/disable HA heartbeat messageauthentication. Enabling
HA heartbeat message authentication prevents an attacker from
creatingfalse HA heartbeat messages. False HA heartbeat
messages could affect the stability ofthe cluster.
disable
encryption {disable |
enable}
Enable/disable HA heartbeat messageencryption. Enabling HA
heartbeat messageencryption prevents an attacker from sniffing
HA packets to get HA cluster information.
disable
groupid <id_integer>
The HA group ID. The group ID range is from 0 to 63. All
members of the HA cluster must have the same group ID.
0
hb-lost-threshold
<threshold_integer>
The lost heartbeat threshold, which is the number of seconds to
wait to receive a heartbeat packet from another cluster unit
before assuming thatthe cluster unit has failed. The lost
heartbeat threshold range is 1 to 60 seconds.
If the primary cluster unit does not receive a heartbeat packet
from a subordinate unit before the heartbeat threshold expires,
the primary unit assumes that the subordinate unit has failed.
If a subordinate unit does not receive a heartbeat packet from
the primary unit before the heartbeat threshold expires, the
subordinate unit assumes that the primary unit has failed. The
subordinate unit then begins negotiating to become the new
primary unit.
The lower the lost heartbeat interval the faster the cluster
6
Summary of Contents for freeGuard 100
Page 1: ...freeGuard 100 UTM Firewall CLI USER S MANUAL P N F0025000 Rev 1 1...
Page 3: ......
Page 7: ......
Page 87: ...80 The config ips anomaly command has 1 subcommand config limit...
Page 183: ...176...