Article Overview

Core switch HA ensures network redundancy by using active-passive or active-active supervisor modules, enabling seamless failover without disrupting traffic.

HA Modes and Supervisor Roles

Core switches typically support active-passive or active-active HA modes. In active-passive mode, one supervisor module is active while the other remains on standby, constantly monitoring the active module. If the active module fails, the standby automatically takes over, maintaining network traffic continuity. In active-active setups, both modules can process traffic, providing load balancing and redundancy simultaneously .

Step-by-Step HA Configuration

  1. Prepare Network Components
    • Ensure all network links, VLANs, and routing paths are configured to allow the standby core switch to assume the primary role seamlessly.
    • Configure load balancers or DNS as needed to support HA failover .
  2. Enable HA on Primary and Secondary Switches
    • Log into the Primary Core System Manager.
    • Navigate to Maintenance > HA Configuration > Service Configuration.
    • Enable High Availability and set the mode to Primary.
    • Repeat on the Secondary Core, setting the mode to Secondary and node status to Passive .
  3. Configure Trusted Hosts
    • On the primary switch, copy the Local Server SSH Key.
    • On the secondary switch, add the primary as a trusted host by pasting the SSH key.
    • This ensures secure communication between HA nodes .
  4. Link Aggregation and Redundancy
    • Use LACP (802.3ad) to aggregate multiple physical links between switches and HA devices for higher redundancy and performance.
    • Separate LACP groups for each HA device to prevent single points of failure .
  5. Verify HA Status
    • Use commands like show system redundancy status or show module to confirm active and standby supervisor roles.
    • Ensure all modules report OK status and the standby module reflects HA-standby if HA switchover is enabled .

Best Practices

  • Double Interconnect Links: For FortiSwitch or similar setups, double the interconnect links between distribution switches to ensure failover reliability .
  • Nonstop Forwarding (NSF) and Stateful Switchover (SSO): Enable these features on Cisco platforms to maintain session information and minimize downtime during switchover .
  • Regular Testing: Periodically perform manual switchover tests to validate HA functionality and failover behavior.
  • Monitor Logs and Alerts: Continuously monitor HA events to detect early signs of hardware or software issues.

Summary

Configuring HA on core switches involves enabling HA on both primary and secondary nodes, setting up trusted host communication, aggregating links for redundancy, and verifying module status. Following best practices like LACP, SSO, and regular testing ensures minimal disruption and high network availability in case of failures .

Fortinet Documentation Library

Fortinet Documentation Library

Switch High Availability Design

Are they active/active or active/standby? Active/standby would be simplest and is similar to the access to core as

Core Switch and Access Switch configuration

HI TEAM, I have a 2 3850 core switch which is on HA and 2960x for my access switch, i requried help on 2 things. 1)

High Availability Configuration Guide

With FSU, you can configure the system to switch over to a standby RP that is preloaded with an upgraded Cisco software image.

Switch configuration for upstream HA firewalls

I have a pair of 450s that I just configured for HA, Active/Passive, but it just occurred to me that I''ll need to do something with routing

Fortigate HA and Two Redundant Core Switches : r/fortinet

The way it is setup today is not "wrong", providing the FortiGates fail over the cluster of a core switch goes down and providing both

Best Practices

I would also connect the firewalls to two different switches. The real trick is the configuration on the firewalls so that if

HA setup workflow

HA setup workflow A proper Core HA setup configuration consists of the following steps: • Step 1 – Set up network components •

Technical Tip: High Availability basic deployment design

In the following scenarios, FortiGate is connected to two switches without LACP and with LACP (802.3ad) design. Any

Solved: High availability with switch stack

HA is available for management traffic and any routing configuration as each switch in the stack is capable of being the

Understanding Network-Level High Availability

For HA configuration details on OSPFv2, EIGRP, and BGP, see the "High Availability and Graceful Restart" chapter of

Mission Critical Systems L3 Core Switch HA

Mission Critical Systems L3 Core Switch HA In this lab, we will use HSRP protocol to create high availability for our

High availability scenarios

High availability scenarios This section describes architecture scenarios for the Core High Availability (HA) solution. Each scenario

Stacking and High Availability Configuration Guide, Cisco IOS XE

Stacking and High Availability Configuration Guide, Cisco IOS XE Amsterdam 17.3.x (Catalyst 9300 Switches)

Solved: Redunancy with two switches core

Hello everyone, I have a customes have just bougth ttwo switches core (L3), his today diagram network is: Access

Edgeswitch HA Design

Hi to all Spicemasters! Good day. I have a question regarding the performance of EdgeSwitch PoE+ 48 (500W). I am

Configuring the Core Switch

Configuring the Core Switch Context In this scenario, IP addresses of the interfaces connecting the core switch to the

Mission Critical Systems L3 Core Switch HA

In this lab, we will use HSRP protocol to create high availability for our topology using two core switches as primary

Configure Active/Passive HA

To configure an active/passive HA pair, first verify that any filtering devices between your HA pair members allow the protocols and

13.3. Setting Up HA

Using the Web Interface wizard is discussed in Section 13.3.2, Wizard HA Setup. Performing cOS Core setup without the wizard is

Cisco

Chassis switch can support multiple supervisors, offering redundancy within the switch itself Some switches also have multiple power

Cisco core switches high availability

For high availability you will need to enable spanning tree protocol on all switches (core, distribution & access). You

HA configuration | FortiSwitch 6.4.6 | Fortinet Document Library

Configure HA in active-passive mode. This configuration results in the managed FortiSwitch units. Finalize by doubling the ICL links

HAconfig.mif

When the switch powers up and both supervisor modules are present, the supervisor module that comes up first enters the active

Configuring High Availability

Before configuring high availability, check these requirements and recommendations.

Configure Active/Passive HA

Active/Passive High Availability (HA) provides firewall redundancy by maintaining two firewalls in a primary-secondary relationship,

HA A/P LACP LAG To Core Switch : r/fortinet

Hi All, I''ve been reading best practices for configuring LACP LAGs to an upstream switch (Stack) and have decided to go with the

HA using a hardware switch to replace a physical switch

HA using a hardware switch to replace a physical switch An HA cluster can be deployed without physical switches connecting the

13.3. Setting Up HA

Physical setup of the HA cluster and decisions about IP addresses is first discussed in Section 13.3.1, Hardware Setup. Configuration

Related Resources

Ready to Optimize Your Cable Infrastructure?

Request a free quote for fiber optic cable trays, grid runways, U-steel troughs, aluminum bridges, or complete overhead trunking systems. EU‑owned German factory – reliable, compliant, and cost‑effective solutions for Africa.