Cisco Cisco Firepower Management Center 4000

Page of 1844
 
6-11
FireSIGHT System User Guide
 
Chapter 6      Managing Devices
  Configuring High Availability
Step 15
If you used a unique NAT ID on the secondary Defense Center, type the same registration ID that you 
used in step 
 in the 
Unique NAT ID
 text box.
Step 16
Click 
Register
.
A success message appears, and the Peer Manager page appears, showing the current state of the primary 
Defense Center.
Monitoring and Changing High Availability Status
License: 
Any
Supported Defense Centers: 
DC1000, DC1500, DC3000, DC3500
After you have identified your primary and secondary Defense Centers, you can use one of them to view 
status information about the other, including:
  •
IP address
  •
product model
  •
operating system
  •
operation system version
  •
the local role (Active & Primary, Inactive & Primary, Inactive & Secondary, or Active & Secondary)
  •
time the Defense Centers last synchronized
You can also use the High Availability page to change the roles of the Defense Centers if the primary 
Defense Center fails. Because the system restricts the following functionality to the primary Defense 
Center, if that appliance fails, you must promote the secondary Defense Center to Active:
  •
Updates to URL category and reputation data; see 
 for more information.
  •
Updates to Security Intelligence feeds; see 
 for 
more information.
  •
Associations between correlation rules and responses; see 
more information.
To check high availability status:
Access: 
Admin
Step 1
Log into one of the Defense Centers that you linked using high availability.
Step 2
Select 
System > Local > Registration
.
The Registration page appears.
Step 3
Click 
High Availability
.
The High Availability page appears.
Step 4
Under 
High Availability Status
, you can view the following information about the other Defense Center in 
the high availability pair:
  •
the IP address
  •
the model name