Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
High Availability User Guide
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

Multinode High Availability Support for vSRX Virtual Firewall Instances

date_range 20-Dec-24

Multinode High Availability addresses high availability requirements for private and public cloud deployments by offering interchassis resiliency.

We support Multinode High Availability on Juniper Networks vSRX Virtual Firewall Virtual Firewalls for the private (Kernel-based virtual machine [KVM] and VMware ESXi) and public cloud (AWS) deployments.

You can configure Multinode High Availability on vSRX instances by using the same method as for physical SRX Series firewalls for private cloud deployments.

To configure Multinode High Availability in VMware ESXi, and KVM:

To configure Multinode High Availability in public cloud deployments:

ICL Encryption and Flexible Datapath Failure Detection Support

The vSRX Virtual Firewall in Multinode High Availability deployed in private clouds (KVM and VMware ESXi) supports ICL Encryption and Flexible Datapath Failure Detection.

  • ICL Encryption uses IPsec protocols to secure synchronization messages between high-availability nodes, ensuring data privacy. See Example: Configure Multinode High Availability in a Layer 3 Network for configuration details.
  • Flexible Datapath Failure Detection offers path monitoring with granular control through weighted features, supporting IP, Bidirectional Forwarding Detection (BFD), and interface monitoring.

    SeeFlexible Path Monitoring for more details.

footer-navigation