![]() ![]() If they are not please do this step first before doing the ones above. ![]() Make sure all licenses, dynamic updates, GP version if enabled and OS version are identical. Make sure your HA1 and HA2 links are connected. This will make the firewall less preferable in HA settings and will act as secondary device. Finally your firewall priority will be 200. Now go to secondary and repeat the same steps from 1 to 19 with some differences. We will enable it after completing cofig. I recommend you generate your link group with the interfaces you want to monitor but disable it. Under Active Passive Setup choose mode auto. ![]() You dont need to type an IO and choose ethernet. Then select your HA2 interface, this can be different depending on the platform. Select your backup HA link, in this case it will be your mgmgt IP. Then configure your HA port your IP will be 1.1.1.1 and mask 255.255.255.252 I always define 1.1.1.2 and y backup peer IP I always use my management IP of the secondary FW. Go back to primary FW and go to Device-High Availability and enable HA, select group ID, this number must be identical between your primary and secondary device.ĭefine your primary peer IP. Device-Management-Panorama Settings and the Panorama IP or IPs in case is a PAnorama HA.Īdd the new detected SN in Panorama to the desir device group and template stack. Configure firewall to communicate to Panorama.
0 Comments
Leave a Reply. |