Hi
I'm not sure it's recommended to use VSD0 in a dual VSD scenario, as this one has specific configuration (for example it uses the physical IP of master as IP of cluster);
1) if eth0/0 is part of VSD0, the second firewall cannot use this interface as source, because it will have the same IP than the primary hen one, so it cannot be up when mpaster is active.
try to use vsd2 instead of vsd0. (delete vsd0 and create a new one).
2) you must configure management IPs on each firewall (can be done via console), to make sure you can reach the device you want to connect to.
3) make sure you declare the routes with outgoing interface on the cluster.
otherwise : route aren't synchronized, and remain active even when outgoing interface is down.
4) why do you usr RIP ? convergenece is slow, so in case of a failover your sessions can be dropped or timed out.
hope this helps.