Software Secure Firewall Threat Defense
Platform Secure Firewall Threat Defense Virtual
Activity Onboard

Add Devices to the Management Center

Before configuring clustering, deploy each cluster node, then add the devices as standalone units on the Firewall Management Center.

Procedure

1

Deploy each cluster node according the Cisco Secure Firewall Threat Defense Virtual Getting Started Guide.

All units in a cluster:

  • Must have jumbo frame reservation enabled for the cluster control link. Do this in the Day 0 configuration when you deploy the Firewall Threat Defense Virtual by setting "DeploymentType": "Cluster". Otherwise, you must restart each node to enable jumbo frames after the cluster has formed and is healthy.

  • (KVM only) Must use CPU hard partitioning (CPU pinning) for all VMs on the KVM host.

2

Add each node to the Firewall Management Center as a standalone device in the same domain and group.

You can create a cluster with a single device, and then add more nodes later. The initial settings (licensing, access control policy) that you set when you add a device will be inherited by all cluster nodes from the control node. You will choose the control node when forming the cluster.