<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HA Clustering Info in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/532396#M109763</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70130"&gt;@aleksandar.astardzhiev&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the case you mentioned, is it require a load balancer for session distribution? for my case all of the gateway are required to terminate on PA firewall, and same as&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/199427"&gt;@VFaticati&lt;/a&gt;&amp;nbsp;, one DC with A/P HA, and the other one is standalone.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 27 Feb 2023 23:25:11 GMT</pubDate>
    <dc:creator>fyeung</dc:creator>
    <dc:date>2023-02-27T23:25:11Z</dc:date>
    <item>
      <title>HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502207#M105314</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;i have a question for all:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have two datacenter&amp;nbsp; in two different city. The datacenters comunication in Layer 2 witn VRRP.&lt;/P&gt;&lt;P&gt;In primary DataCenter&amp;nbsp;(active) i have two FW in Active/Passive (Peer HA), i would configurate a new FW in secondary data center (in passive mode), same model FW, it's possbile? how to configuration this scenario?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;V.A&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 13:19:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502207#M105314</guid>
      <dc:creator>VFaticati</dc:creator>
      <dc:date>2022-06-09T13:19:14Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502260#M105316</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Possible yes since your HA interfaces can be any of the interfaces on the PAN. My biggest question would be why? Have the secondary data center PAN standalone and active. You can control routing via OSPF and route metrics.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Just my thoughts, I'm sure you have specific requirements.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 14:45:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502260#M105316</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2022-06-09T14:45:02Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502265#M105317</link>
      <description>&lt;P&gt;the datacenter passive, it's work only for disaster recovery.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 14:48:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502265#M105317</guid>
      <dc:creator>VFaticati</dc:creator>
      <dc:date>2022-06-09T14:48:20Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502267#M105319</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I've done similar configs, and my DR data center was active. just disable the inbound NAT's. However you should be able to set it up the way you described.&lt;/P&gt;
&lt;P&gt;Just a thought.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 14:51:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502267#M105319</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2022-06-09T14:51:58Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502285#M105323</link>
      <description>&lt;P&gt;OK so every FW in the cluster in Active/Passive I have to configure HA1, HA1-Backup, HA2, HA2-Backup and H4, HA4-Backup and all interconnected? Are there any guides?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 15:02:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502285#M105323</guid>
      <dc:creator>VFaticati</dc:creator>
      <dc:date>2022-06-09T15:02:34Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502360#M105327</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Hopefully the answer lies in the following:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClIbCAK" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClIbCAK&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jun 2022 17:43:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502360#M105327</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2022-06-09T17:43:38Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502594#M105340</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/199427"&gt;@VFaticati&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;Can you clarify if I get your question correctly - you want all three firewalls to be in HA cluster and share session information?&lt;/P&gt;
&lt;P&gt;If I understand that correctly, it is possible, this feature was introduced in version 10.0, so you need to use 10.1 and above (10.0 is no longer supported).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The following gives overview of the feature - &lt;A href="https://docs.paloaltonetworks.com/pan-os/10-0/pan-os-admin/high-availability/ha-clustering-overview" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/10-0/pan-os-admin/high-availability/ha-clustering-overview&lt;/A&gt;&amp;nbsp;&amp;nbsp; As you can see from the link only some devices are supporting such setup, so you may check that as well.&lt;/P&gt;
&lt;P&gt;There is also the steps how to configure "HA clustering" - &lt;A href="https://docs.paloaltonetworks.com/pan-os/10-0/pan-os-admin/high-availability/configure-ha-clustering" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/10-0/pan-os-admin/high-availability/configure-ha-clustering&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 10 Jun 2022 12:17:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/502594#M105340</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2022-06-10T12:17:03Z</dc:date>
    </item>
    <item>
      <title>Re: HA Clustering Info</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/532396#M109763</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70130"&gt;@aleksandar.astardzhiev&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the case you mentioned, is it require a load balancer for session distribution? for my case all of the gateway are required to terminate on PA firewall, and same as&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/199427"&gt;@VFaticati&lt;/a&gt;&amp;nbsp;, one DC with A/P HA, and the other one is standalone.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Feb 2023 23:25:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha-clustering-info/m-p/532396#M109763</guid>
      <dc:creator>fyeung</dc:creator>
      <dc:date>2023-02-27T23:25:11Z</dc:date>
    </item>
  </channel>
</rss>

