Method used to configure interworking between BFD sessions and the two-node cluster hot backup on the USG firewall

Publication Date:  2016-11-24 Views:  273 Downloads:  0
Issue Description
Method used to configure interworking between BFD sessions and the two-node cluster hot backup on the USG firewall
Solution
The VGMP management group is the core of the two-node cluster hot backup. It determines the active/standby state of a device.
By means of interworking between BFD sessions and the two-node cluster hot backup, the VGMP management group monitors static BFD sessions, and the priority of the VGMP management group varies depending on the BFD session state. In this way, the active/standby switchover between devices is triggered.

This case describes key configuration for the interworking between BFD sessions and the two-node cluster hot backup using active/standby two-node cluster hot backup as an example.
1. Establish the two-node cluster hot backup on two devices.
2. On USG_A and Router_A, create BFD sessions.
# On USG_A, configure BFD session 1, and set the peer IP address to 1.1.1.2, local identifier to 10, and remote identifier to 20.
HRP_A[USG_A] bfd
HRP_A[USG_A-bfd] quit
HRP_A[USG_A] bfd 1 bind peer-ip 1.1.1.2
HRP_A[USG_A-bfd-session-1] discriminator local 10
HRP_A[USG_A-bfd-session-1] discriminator remote 20
HRP_A[USG_A-bfd-session-1] commit
HRP_A[USG_A-bfd-session-1] quit
# On Router_A, configure BFD session 1, and set the peer IP address to 10.100.30.2, local identifier to 20, and remote identifier to 10.
3. On USG_A, configure the interworking between BFD sessions and the two-node cluster hot backup.
HRP_A[USG_A] hrp track bfd-session 10 master
4. On USG_B and Router_B, create BFD sessions.
# On USG_B, configure BFD session 1, and set the peer IP address to 2.2.2.2, local identifier to 10, and remote identifier to 20.
HRP_S[USG_B] bfd
HRP_S[USG_B-bfd] quit
HRP_S[USG_B] bfd 1 bind peer-ip 2.2.2.2
HRP_S[USG_B-bfd-session-1] discriminator local 10
HRP_S[USG_B-bfd-session-1] discriminator remote 20
HRP_S[USG_B-bfd-session-1] commit
HRP_S[USG_B-bfd-session-1] quit
# On Router_B, configure BFD session 1, and set the peer IP address to 10.100.40.2, local identifier to 20, and remote identifier to 10.
5. On USG_A, configure the interworking between BFD sessions and the two-node cluster hot backup.
HRP_S[USG_B] hrp track bfd-session 10 slave
Note: The USG6000 configuration must be consistent with the key configuration of the USG2000&5000. This case takes the USG2000&5000 as an example to describe the configuration. You can learn the USG6000 configuration in other configurations.
For specific configurations, click Method used to configure interworking between BFD sessions and the two-node cluster hot backup client on the USG firewall.

END