What's "best practice" regarding HA link network?
- at the moment my HA link network (physical port / peer2peer) is zone DMZ -> not cool because SSH access for DMZ zone must be activated or HA will not work anymore -> SSH access from DMZ zone on all HA firewalls possible?
https://docs.sophos.com/nsg/sophos-firewall/20.0/Help/en-us/webhelp/onlinehelp/HighAvailablityStartupGuide/HAConfiguration/HowToArticles/HAHowToActivePassive/index.html
When switching to zone "none" do I also have to configure anything regaring SSH (needed for HA sync)? HA sync need FW rules?
Added TAGs
[edited by: Raphael Alganes at 10:43 AM (GMT -8) on 8 Nov 2024]