Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Huawei Firewall VRRP knowledge Point

2025-04-08 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

I. Preliminary understanding of VRRP

The role of virtual MAC

III.

IV. VGMP Group

V.

VI. Configuration steps

By default, the ability to configure standby devices is not enabled, and all information that can be backed up can only be configured on the active device, not on the standby device

vrrp vrid 1 virtual-ip 192.168.100.254 255.255.255.0 active

hrp enable #Enable HRP backup (required)

hrp interface g0/0/3 #Specify heartbeat port (interface type and number must be the same, Layer 2 Ethernet interface is not supported)(required)

hrp mirror session enable #Enable fast session backup (optional)

hrp auto-sync #Enable automatic backup of command and status information

hrp mirror session enable #Enable session fast backup

hrp standby config enable #All information that can be backed up can be configured directly on the standby device, and the configuration on the standby device can be synchronized to the primary device

VGMP is similar to VRRP, but different from VRRP is that after receiving the hello message, the standby end will respond with an ACK message, which will carry its own priority, VRRP member status, etc.

General problems are caused by carelessness

Believe in your area of expertise

What the customer says may not be all right, check and judge by yourself, but when you don't know the network environment, ask more questions and it's right. Believe in the customer and you will make mistakes (Note: A good technology will not ask customers too much to collect information)

Case I:

The phenomenon that the client mismatches the server gateway:

This causes the server to be disconnected from other network segments on the firewall, and can only be connected to its own network segment. No matter what protocol you use to announce the interface, it is disconnected.

Case II:

Firewall address and server address configuration conflict

As a result, the device cannot be managed remotely. Plug the network cable into the management port of the device to log in and access it.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report