set

system ha {cpeer interface peer secondary-interface secondary-peer}

Keywords/Variables

Description

Default

 

 

 

<primary-local_ipv4>

The primary heartbeat local IP address and netmask for

10.0.0.1

<netmask_ipv4>

this FortiMail unit. When the FortiMail unit is operating in

255.255.255.0

 

HA mode, you can enter get system interface

 

 

<interface_str> to display this IP address and

 

 

netmask, where <interface_str> is the name of the

 

 

primary heartbeat interface.

 

 

primary-local_ipv4of the primary unit must match

 

 

primary-peer_ipv4of the backup unit. Normally you

 

 

would set primary-local_ipv4on the primary unit to

 

 

10.0.0.1.

 

 

In an active-passive HA group primary-local_ipv4

 

 

of the backup unit must match primary-peer_ipv4of

 

 

the primary unit. Normally you would set primary-

 

 

local_ipv4 on the backup unit to 10.0.0.2.

 

 

In a config only HA group you would normally set

 

 

primary-local_ipv4on the first backup unit to

 

 

10.0.0.2, primary-local_ipv4 on the second

 

 

backup unit to 10.0.0.3, primary-local_ipv4 on

 

 

the third backup unit to 10.0.0.4, and so on.

 

<primary-interface_str>

The name of the network interface to be used for the

 

 

primary heartbeat. The default primary heartbeat

 

 

interface is the network interface with the highest

 

 

number. In most cases you would not have to select a

 

 

different network interface.

 

 

 

 

<primary-peer_ipv4>

The primary heartbeat IP address for the other FortiMail

10.0.0.2

 

unit in the HA group. This is the IP address that the

255.255.255.0

 

FortiMail unit primary heartbeat expects to be able to

 

connect to find the other FortiMail unit in the HA group.

 

 

primary-peer_ipv4of the primary unit must match

 

 

the primary-local_ipv4of the backup unit. Normally

 

 

you would set primary-peer_ipv4on the primary unit

 

 

to 10.0.0.2.

 

 

primary-peer_ipv4of the backup unit must match

 

 

the primary-local_ipv4of the primary unit. For an

 

 

active-passive or a config only HA group you would set

 

 

primary-peer_ipv4of the backup unit or units to

 

 

10.0.0.1.

 

<secondary-local_ipv4>

In an active-passive HA group, the secondary heartbeat

0.0.0.0

<netmask_ipv4>

local IP address and netmask for this FortiMail unit.

0.0.0.0

When the FortiMail unit is operating in HA mode, you can

 

enter get system interface <interface_str> to

 

 

display this IP address and netmask, where

 

 

<interface_str> is the name of the secondary

 

 

heartbeat interface.

 

 

secondary-local_ipv4of the primary unit must

 

 

match secondary-peer_ipv4of the backup unit. You

 

 

could set secondary-local_ipv4on the primary unit

 

 

to 10.1.1.1.

 

 

secondary-local_ipv4of the backup unit must

 

 

match secondary-peer_ipv4of the primary unit. You

 

 

could set primary-local_ipv4on the backup unit to

 

 

10.1.1.2.

 

FortiMail™ Secure Messaging Platform Version 3.0 MR4 CLI Reference

 

06-30004-0420-20080814

315

Page 315
Image 315
Fortinet 3.0 MR4 Primary-localipv4, 10.0.0.1, Netmaskipv4, 255.255.255.0, Primary-interfacestr, Primary-peeripv4, 10.0.0.2