- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- Aruba & ProVision-based
- >
- Dual 5412zl solution
-
- Forums
-
- Advancing Life & Work
- Advantage EX
- Alliances
- Around the Storage Block
- HPE Ezmeral: Uncut
- OEM Solutions
- Servers & Systems: The Right Compute
- Tech Insights
- The Cloud Experience Everywhere
- HPE Blog, Austria, Germany & Switzerland
- Blog HPE, France
- HPE Blog, Italy
- HPE Blog, Japan
- HPE Blog, Middle East
- HPE Blog, Russia
- HPE Blog, Saudi Arabia
- HPE Blog, South Africa
- HPE Blog, UK & Ireland
-
Blogs
- Advancing Life & Work
- Advantage EX
- Alliances
- Around the Storage Block
- HPE Blog, Latin America
- HPE Blog, Middle East
- HPE Blog, Saudi Arabia
- HPE Blog, South Africa
- HPE Blog, UK & Ireland
- HPE Ezmeral: Uncut
- OEM Solutions
- Servers & Systems: The Right Compute
- Tech Insights
- The Cloud Experience Everywhere
-
Information
- Community
- Welcome
- Getting Started
- FAQ
- Ranking Overview
- Rules of Participation
- Tips and Tricks
- Resources
- Announcements
- Email us
- Feedback
- Information Libraries
- Integrated Systems
- Networking
- Servers
- Storage
- Other HPE Sites
- Support Center
- Aruba Airheads Community
- Enterprise.nxt
- HPE Dev Community
- Cloud28+ Community
- Marketplace
-
Forums
-
Blogs
-
Information
-
English
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
10-24-2016 09:42 AM
10-24-2016 09:42 AM
Dual 5412zl solution
Hello everyone,
One of our clients has got a new HP solution with 2 5412zl core switches and 2920 for access layer switching.
Our client is pushing their standards of network configuration and also providing for the firewalls. They have 2 pair of Juniper Firewalls in HA mode.
The problem is they don't want the 5412 to apply routing at all as they are going to do so inside the Juniper devices.
My question is, as they got 2 5412 and want redundancy, what other options rather than VRRP I have to do so?
VRRP requires that 5412 deploy routing and also I need IP addresses setup in VLAN interfaces. What other redundancy solution can I provide for them with this equipment.
THank you,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
10-25-2016 01:01 PM - edited 10-25-2016 01:01 PM
10-25-2016 01:01 PM - edited 10-25-2016 01:01 PM
Re: Dual 5412zl solution
Redundancy to what (and where) exactly?
I'm not an HPE Employee

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
10-25-2016 02:01 PM
10-25-2016 02:01 PM
Re: Dual 5412zl solution
Hi
Are the switches the new 5412R type?
If so you may have a clustering option with VSF
Have a look here
Thanks
Ian
## ---------------------------------------------------------------------------##
Which is the only cheese that is made backwards?
Edam!
Tweets: @2techie4me
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
10-26-2016 03:31 PM
10-26-2016 03:31 PM
Re: Dual 5412zl solution
Redundancy between the 2 5412 and the Juniper firewalls.
One Firewall will be connected to each of the 2 5412. But the client doesn't want to deploy routing in the switches, they want to do it with the Juniper Firewalls.
Basing on that, what would be the best way to squeeze the equipment?
As they don't want to route in the 5412's I cannot apply VRRP.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
10-31-2016 03:41 AM
10-31-2016 03:41 AM
Re: Dual 5412zl solution
Each Juniper Firewall HA's member should be concurrently connected to both the two downstram 5412 zl Switches (provided that those two downstream Switches can form a sort of HA cluster too...so they can be seen from the Juniper Firewall HA stack as a single logical virtual switch <- that's because @Ian Vaughan asked you by mentioning a possible VSF Virtual Switching Framework implementation on HPE/Aruba 5400R zl2 with v3 Modules)...because, if you physically connect then only one Juniper Firewall HA's member - as you've written - to both the downstream Switches leaving the other HA member out-of-the-picture...and the connected member (actual Active) eventually fails, then the physical connectivity to the new elected Active member (the Juniper Firewall HA's member that is/become the new active or the Juniper Firewall HA's member to which the failover happens) will not be available...because it wasn't physically deployed...so any good proposition to set up an HA scenario between the Juniper Firewall HA stack and the downstream Switches stack will fail very shortly...isn't that right?
I'm not an HPE Employee

Hewlett Packard Enterprise International
- Communities
- HPE Blogs and Forum
© Copyright 2021 Hewlett Packard Enterprise Development LP