SunScreen 3.2 Configuration Examples

HA Notes

When administering an HA cluster, you usually contact only the primary Screen because it stores all the configuration information. If you need to administer the secondary Screen remotely, you must first have the Screen set up with an Administrative Interface (required in stealth mode). Then you need to add an access control list (ACL entry) on the Administration Station for the IP address of the secondary Screen's administrative interface using the same certificate names as those used by the primary Screen. The secondary and primary Screens have the same keys, which are copied across the HA interface during activation.