Hello,
I wonder how the process looks when a warm spare pair MX devices firmware gets upgraded. Is it something like described in the following sentence?
The spare upgrades it's firmware, followed by it taking over the master role while the primary MX upgrades and once it's done takes back the master role?
In addition, I wonder if it is possible to run one of the two MX devices which forms a warm spare pair on the newer firmware for a period of time before upgrading the spare unit? Im guessing no, but I cant seem to find any documentation on the matter.
Solved! Go to solution.
@PhilipDAth Docs suggest that ideally the pair members should take turns updating.
When MX appliances configured to operate in High Availability (HA) (either in NAT/routed mode or when operating as one-armed VPN concentrators), the dashboard will automatically take steps to minimize downtime when upgrades are performed to ensure a zero-downtime MX upgrade. This is achieved through the following automated process:
The Primary MX downloads firmware
The Primary MX stops advertising VRRP
The Secondary MX becomes master
The Primary MX reboots
The Primary MX comes online again
The Primary MX starts advertising VRRP again
The Primary MX becomes Master Again
The Secondary MX downloads firmware (approximately 15 minutes after the original upgrade is scheduled)
The Secondary MX stops advertising VRRP
The Secondary MX reboots and comes back online
That‘s exactly the way it goes: secondary gets updated, takes over, afterwards the primary one receives the update and tackes over again when everything is up and running again.
As the Dashboard is taking care of the whole process, it isn‘t possible to have only one of the boxes being upgraded.
Are you sure about that?
I had the impression that things go offline when you upgrade a warm spare pair, and that shouldn't happen if it only does one at a time.
@PhilipDAth Docs suggest that ideally the pair members should take turns updating.
When MX appliances configured to operate in High Availability (HA) (either in NAT/routed mode or when operating as one-armed VPN concentrators), the dashboard will automatically take steps to minimize downtime when upgrades are performed to ensure a zero-downtime MX upgrade. This is achieved through the following automated process:
The Primary MX downloads firmware
The Primary MX stops advertising VRRP
The Secondary MX becomes master
The Primary MX reboots
The Primary MX comes online again
The Primary MX starts advertising VRRP again
The Primary MX becomes Master Again
The Secondary MX downloads firmware (approximately 15 minutes after the original upgrade is scheduled)
The Secondary MX stops advertising VRRP
The Secondary MX reboots and comes back online
See below, first image is reboot of primary, after warm spare has taken over:
and then the below is the warm spare rebooting once primary has taken over vrrp again
This is with the 15.x firmware train so 14.x may be different.
hi
Is this documented anywhere ?
I had assumed that would be the process but cannot find it in Meraki documentation.