![cisco asav azure ha vpn cisco asav azure ha vpn](https://i.ytimg.com/vi/n3tyF9FbUr0/maxresdefault.jpg)
A failover group is simply a logical group of one or more security contexts. In Active/Active failover, you divide the security contexts on the ASA into 2 failover groups. Active/Active failover is only available to ASAs in multiple context mode.
![cisco asav azure ha vpn cisco asav azure ha vpn](https://1.bp.blogspot.com/-moaRF6S5NQw/X7uq-XXSkGI/AAAAAAAAMkg/pV_XjTqzTVIeisuLUSp_DlptU0P9Pbl_QCLcBGAsYHQ/s1360/asa-2.jpg)
The ASA supports two failover configurations, Active/Active failover and Active/Standby failover. If those conditions are met, failover occurs. The health of the active interfaces and units is monitored to determine if specific failover conditions are met.
![cisco asav azure ha vpn cisco asav azure ha vpn](https://files.readme.io/f32f24b-azure-vnet-ip.png)
Configuring high availability requires two identical ASAs connected to each other through a dedicated failover link and, optionally, a Stateful Failover link.