<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HA Configurations in Strata Cloud Manager (SCM) with NGFW. in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ha-configurations-in-strata-cloud-manager-scm-with-ngfw/m-p/1221742#M5586</link>
    <description>&lt;P&gt;Thanks for the info&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":grinning_face:"&gt;😀&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 24 Feb 2025 08:59:43 GMT</pubDate>
    <dc:creator>nikoolayy1</dc:creator>
    <dc:date>2025-02-24T08:59:43Z</dc:date>
    <item>
      <title>HA Configurations in Strata Cloud Manager (SCM) with NGFW.</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ha-configurations-in-strata-cloud-manager-scm-with-ngfw/m-p/616341#M4969</link>
      <description>&lt;P&gt;Good Day fellow techies&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am writing this article because I was very confused at the SCM tech writing of the Admin Guide, in regards to HA.&lt;/P&gt;
&lt;P&gt;I REALLY tried to follow along with the steps, but could not understand.&amp;nbsp; I think I am not the only one.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, in basic terms, create your folder structure as you would for NGFW FWs, that you will be managing with SCM.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For me, I ignore putting anything in the highest (parent) folder of &lt;STRONG&gt;All Firewalls.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I created a folder (&lt;STRONG&gt;LIB Firewalls&lt;/STRONG&gt;) in SCM, and put 2 FWs in that folder (FW-A and FW-B)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_0-1730985799439.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63849i20FB0CAB7D2F3C36/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SCantwell_0-1730985799439.png" alt="SCantwell_0-1730985799439.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I created my variable and interfaces in the parent &lt;STRONG&gt;LIB Firewalls&lt;/STRONG&gt; folder. (not shown here)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SCM documentation then states you should be able to configure your HA from your Configuration Scope, but there is something missing....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A better clarification is to go to the actual FW-DEVICE (&lt;STRONG&gt;FW-A and FW-B&lt;/STRONG&gt;).&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_1-1730984808101.png" style="width: 309px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63844i8C29C22315C88842/image-dimensions/309x265?v=v2" width="309" height="265" role="button" title="SCantwell_1-1730984808101.png" alt="SCantwell_1-1730984808101.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is my "before" picture&amp;nbsp; (I want to have eth1/3 and eth1/4 used for HA)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Notice that eth 3 and eth 4 show as Not Configured.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_2-1730984845856.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63845i603F6CFD512CE6C2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SCantwell_2-1730984845856.png" alt="SCantwell_2-1730984845856.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I clicked on ethernet1/3&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_3-1730984916648.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63846iD093395C6FEAC772/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SCantwell_3-1730984916648.png" alt="SCantwell_3-1730984916648.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you add your interfaces (which will be only for HA in my example ), you are presented with the &lt;STRONG&gt;ADD&lt;/STRONG&gt; Ethernet window,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_4-1730984953665.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63847i0D3C12C64AA6E64B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SCantwell_4-1730984953665.png" alt="SCantwell_4-1730984953665.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;(Viola!) this is where you see the mysterious Interface Type with a radio button of Default.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You do not need to do anything anything, just hit OK, and the interface is now created (in the device folder itself).&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do this for your 2nd interface...and......&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;(This is my "after".&amp;nbsp; Notice that now eth 3 and eth 4 currently show Auto (for Link Status)&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SCantwell_5-1730985007818.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/63848i7B6EAE725BFF7760/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SCantwell_5-1730985007818.png" alt="SCantwell_5-1730985007818.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now you can come back to Configuration Scope for the parent folder (&lt;STRONG&gt;LIB Firewalls) &lt;/STRONG&gt;and finish your configuration for HA with variables or IPs or whatever you need.&lt;BR /&gt;&lt;BR /&gt;Thanks to Rae A (at TAC), who was wonderful and helped me in about 3 minutes, after needing to lab this out herself&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":face_with_tongue:"&gt;😛&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Nov 2024 13:23:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/ha-configurations-in-strata-cloud-manager-scm-with-ngfw/m-p/616341#M4969</guid>
      <dc:creator>S.Cantwell</dc:creator>
      <dc:date>2024-11-07T13:23:53Z</dc:date>
    </item>
    <item>
      <title>Re: HA Configurations in Strata Cloud Manager (SCM) with NGFW.</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/ha-configurations-in-strata-cloud-manager-scm-with-ngfw/m-p/1221742#M5586</link>
      <description>&lt;P&gt;Thanks for the info&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":grinning_face:"&gt;😀&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Feb 2025 08:59:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/ha-configurations-in-strata-cloud-manager-scm-with-ngfw/m-p/1221742#M5586</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2025-02-24T08:59:43Z</dc:date>
    </item>
  </channel>
</rss>

