This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos UTM 9 Cluster

I have installed two instances as Virtualbox Appliances and assigned a  license to them.

One box can be reached via 192.168.2.100 the second one via 192.168.2.101, both interfaces reside on the same internal network.

Another internal network (sync) is used to connect the two cluster interfaces.

When I create an Active-Standby Cluster, the cluster nodes cannot be reached any more.

I also tried the autoconfiguration feature, in the logs I can see that the cluster nodes find each other and one node is chosen as primary one. The overview states the cluster configuration and soon after the nodes cannot be reached any more. Hence the same result when I build the cluster manually.

Do you have any ideas what is going wrong here?

Thanks in advance!



This thread was automatically locked due to age.
Parents
  • Hi, Sepp, and welcome to the UTM Community!

    For High Availability to work, both units must be cabled identically.  Both must have the same WAN and LAN connections on identical ethx NICs.  A "Cluster" license is created by setting the node count to 2 in the licensing system which then also causes the lifetime of the license to be cut in half.  If your license doesn't specify two nodes, you will be creating a "Hot-Standby" configuration.

    To setup High Availability you will need to disconnect the second node, Factory Reset it, turn it off, re-cable it, completely configure the running Master, node 1,  and, finally, turn the second node on.  The Master will configure the second node.

    Any better luck with that approach?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hi, Sepp, and welcome to the UTM Community!

    For High Availability to work, both units must be cabled identically.  Both must have the same WAN and LAN connections on identical ethx NICs.  A "Cluster" license is created by setting the node count to 2 in the licensing system which then also causes the lifetime of the license to be cut in half.  If your license doesn't specify two nodes, you will be creating a "Hot-Standby" configuration.

    To setup High Availability you will need to disconnect the second node, Factory Reset it, turn it off, re-cable it, completely configure the running Master, node 1,  and, finally, turn the second node on.  The Master will configure the second node.

    Any better luck with that approach?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data