<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Using AUX port as management port in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/552110#M1630</link>
    <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61214"&gt;@grenzi&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;What about the heartbeat backup when the RJ-45 MGT port is not plugged in?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It seems like you could still have the heartbeat talking between the two firewalls on the MGMT port if you directly cabled them to each other.&amp;nbsp; What is to say that you NEED to have a switch between them?&amp;nbsp; Possible roadblock when it comes to default gateway settings though...you would have to configure each interface with no default gateway, a bogus default gateway, or one of the two firewalls as the default gateway I suppose.&lt;/P&gt;</description>
    <pubDate>Tue, 01 Aug 2023 18:10:43 GMT</pubDate>
    <dc:creator>AaronAxvig</dc:creator>
    <dc:date>2023-08-01T18:10:43Z</dc:date>
    <item>
      <title>Using AUX port as management port</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549632#M1521</link>
      <description>&lt;P&gt;Hello everybody,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; I'm configuring a pair of PA5250 in active/standby high availability mode. Since we have no RJ-45 ports on our switches, I would like to use one of the AUX ports as the management port in place of the default MGT RJ-45 port. We are using 10 Gbps SFP+ transceiver (long range, single mode fiber), and the AUX-1 configured as the HA1 port is working fine. The AUX-2 port, not configured as a HA port, has its own IP address, netmask and gateway but does not come up. The "show interface aux-2" command shows only the configured gateway, while for the IP address and netmask it shows "unknown". This happens on both firewalls in the HA pair.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Am I missing something to configure the AUX-2 as a management interface? What about the heartbeat backup when the RJ-45 MGT port is not plugged in?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The installed PAN-OS is 10.1.3, I will upgrade to 10.1.10-h1 tomorrow to see if this solve the issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Jul 2023 20:20:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549632#M1521</guid>
      <dc:creator>grenzi</dc:creator>
      <dc:date>2023-07-17T20:20:10Z</dc:date>
    </item>
    <item>
      <title>Re: Using AUX port as management port</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549860#M1530</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61214"&gt;@grenzi&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am curious.&amp;nbsp; I have a customer with a PA-5220 w/ PAN-OS 9.1, and the aux interfaces do not show up under Network &amp;gt; Interfaces.&amp;nbsp; They show up under Device &amp;gt; Setup &amp;gt; Interface.&amp;nbsp; Do you see them under both or just one?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Tue, 18 Jul 2023 17:51:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549860#M1530</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2023-07-18T17:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: Using AUX port as management port</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549967#M1538</link>
      <description>&lt;P&gt;Hi, this is normal because AUX-1 and AUX-2 belong to the management plane, so they are not listed in the dataplane interface tab.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyway it seems I solved my issue; the problem was at the physical layer (inverted fiber cables), but since we found RJ45 SFPs to attach the dedicated MGT interfaces to the switch, the AUX-2 port has been reconfigured as the HA1-backup interface.&lt;/P&gt;
&lt;P&gt;.&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jul 2023 06:40:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/549967#M1538</guid>
      <dc:creator>grenzi</dc:creator>
      <dc:date>2023-07-19T06:40:55Z</dc:date>
    </item>
    <item>
      <title>Re: Using AUX port as management port</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/552110#M1630</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61214"&gt;@grenzi&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;What about the heartbeat backup when the RJ-45 MGT port is not plugged in?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It seems like you could still have the heartbeat talking between the two firewalls on the MGMT port if you directly cabled them to each other.&amp;nbsp; What is to say that you NEED to have a switch between them?&amp;nbsp; Possible roadblock when it comes to default gateway settings though...you would have to configure each interface with no default gateway, a bogus default gateway, or one of the two firewalls as the default gateway I suppose.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Aug 2023 18:10:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/using-aux-port-as-management-port/m-p/552110#M1630</guid>
      <dc:creator>AaronAxvig</dc:creator>
      <dc:date>2023-08-01T18:10:43Z</dc:date>
    </item>
  </channel>
</rss>

