Networking > Security > Firewall

set firewall <dpd-uuid-firewall-port-arg> sync-rank <fw-primary-arg> sync-mode <fw-active-arg>

Set the firewall synchronization mode for active/standby configuration. This configuration happens automatically when firewall rules are added to an active/standby logical router via the NSX Manager web interface or API.

This command should be used for advanced configuration or troubleshooting only.

If you manually configure the active/standby sync, you must correctly configure both edge nodes in the active/standby configuration. One node must be configured as primary and one as secondary. One node must be configured as active, and one as passive.

Parameters:

Option Description
<uuid> Firewall logical interface UUID argument
<sync-rank> One of {primary|secondary}
Allowed values: primary, secondary
<sync-mode> One of {active|passive}
Allowed values: active, passive


Example:

nsx-edge> set firewall e159f0db-d8e4-4973-9cbb-8cc30def2c3e sync-rank primary sync-mode active nsx-edge>

Mode:

Basic

Availability: