Customer want to use 2 Firewalls to establish Hot Standby System to make the network more reliable. The network topology as below:
2 hrp 4
In this scenario, FW1 is master firewall, FW2 is slave firewall. Finally, he found that when data link 1 is down, all the data traffic was cut down.
Binds the status of X/X/1 adn X/X/2 interfaces of FW1 into a logical group. If one interface in the logical group is faulty, the system changes the status of the other interfaces to Down.
Although the data link 1 is down, the hrp status of the firewall does not switch.
Because, FW1 is the master firewall of this hot standby system. Data come from the switch will always choose to the way link 2 and link 1 to go out. Untill hrp status switch.
If we want hot standby system more reliable,we can bind the interface into a logical group --- link group.