I have a situation that i need to have firewall fail over capability. 2 separate systems with identical rules with 3 interfaces, (internet, DMZ, and LAN) Has anyone set up this situation and have any recommendations on how it should be approached? I have looked into the linux HA system (http://www.linux-ha.org/). is it possible to load ballance between the two and shift on failure of the primary? Any info or direction would be appreciated. Drag0n dragon@xxxxxxxxxxxxxx