Configuring a State Sync Pair in NAT/Route Mode
This section provides instructions for configuring a pair of SonicWALL NSA appliances for high availability (HA). This section is relevant to administrators following deployment
scenario B.
This section contains the following
•Initial High Availability Setup - page 28
•Configuring High Availability - page 29
•Configuring Advanced HA Settings - page 29
•Synchronizing Settings - page 31
•Adjusting High Availability Settings - page 32
•Synchronizing Firmware - page 32
•HA License Configuration Overview - page 33
•Associating
SonicWALL NSA 2
SonicWALL
HA / Failover Pair
NSA
X5 HA Link
SonicWALL NSA 1
Network Security Appliance
Network Security Appliance
Internet
Local Network
Initial High Availability Setup
Before you begin the configuration of HA on the Primary SonicWALL security appliance, perform the following setup:
1.On the bottom panel of the Backup SonicWALL security appliance, locate the serial number and write the number down. You need to enter this number in the High Availability > Settings page.
2.Verify that the Primary SonicWALL and Backup SonicWALL security appliances are registered, running the same SonicOS Enhanced versions, and running the same SonicWALL Security services.
3.Make sure the Primary SonicWALL and Backup SonicWALL security appliances’ LAN, WAN and other interfaces are properly configured for failover.
4.Connect the X5 ports on the Primary SonicWALL and Backup SonicWALL appliances with a
5.Power up the Primary SonicWALL security appliance, and then power up the Backup SonicWALL security appliance.
6.Do not make any configuration changes to the Primary’s HA interface; the High Availability configuration in an upcoming step takes care of this issue. When done, disconnect the workstation.
Page 28 Configuring a State Sync Pair in NAT/Route Mode