<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Panorama &amp; HA Pair questions in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30772#M22531</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;By shared policy, you are referring to the pre and post rules?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 16 Feb 2012 16:39:30 GMT</pubDate>
    <dc:creator>Jinx</dc:creator>
    <dc:date>2012-02-16T16:39:30Z</dc:date>
    <item>
      <title>Panorama &amp; HA Pair questions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30770#M22529</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm just getting started with&amp;nbsp; Pair of 5000's in Active/Passive and plan to manage them via Panorama. Should I be pushing policy to the 'primary' PA firewall or create a device group and push the policy to both? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Second question: We plan on bringing up a secondary internret connection in about a year with a building and will be adding another pair of PA firewall. The internet connection will be redundent. Is there a way to push policy to multiple sets of firewalls other than through Pre and Post rules? How will be I be able to copy the rules that I've created in the coming year to this new set of firewalls?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Feb 2012 15:50:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30770#M22529</guid>
      <dc:creator>Jinx</dc:creator>
      <dc:date>2012-02-16T15:50:52Z</dc:date>
    </item>
    <item>
      <title>Re: Panorama &amp; HA Pair questions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30771#M22530</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You must push the Panorama config to both HA peers. The shared config is not included as part of the device HA config sync.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use the target column on a rule to specify the rule is sent to a subset of all devices included in a device group. There is currently no capability on Panorama/PAN-OS that supports a copy/paste workflow for rule/object movement. Does this answer the second question?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Feb 2012 16:13:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30771#M22530</guid>
      <dc:creator>mschuricht</dc:creator>
      <dc:date>2012-02-16T16:13:39Z</dc:date>
    </item>
    <item>
      <title>Re: Panorama &amp; HA Pair questions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30772#M22531</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;By shared policy, you are referring to the pre and post rules?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Feb 2012 16:39:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-ha-pair-questions/m-p/30772#M22531</guid>
      <dc:creator>Jinx</dc:creator>
      <dc:date>2012-02-16T16:39:30Z</dc:date>
    </item>
  </channel>
</rss>

