<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HA1 interface was down during 1 second by restarting connection after heartbeat failure. in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77911#M42743</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;These messages in themselves are 'normal', but they do indicate there is an issue&lt;/P&gt;
&lt;P&gt;The HA1 heartbeat was lost for 4 consecutive instances which causes an error state, the cause of this could be several different issues like a faulty network cable, an issue on the switch or router the HA1 is connected to or a remote issue on the HA peer. To make sure you should also verify the logs on the remote HA peer to see if did not have any problems at the time (like a process was restarted or something else happened)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;to prevent the cluster from failing over it's recommended to enable HA1 backup, which can also be accomplished on the management interface if you do not want to dedicate an interface to this. the management interface will only serve as a backup heartbeat to prevent a 'split-brain' where a dedicated interface could perform all the HA1 tasks&lt;/P&gt;</description>
    <pubDate>Wed, 11 May 2016 07:39:14 GMT</pubDate>
    <dc:creator>reaper</dc:creator>
    <dc:date>2016-05-11T07:39:14Z</dc:date>
    <item>
      <title>HA1 interface was down during 1 second by restarting connection after heartbeat failure.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77779#M42708</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I wathched strange logs.&lt;/P&gt;
&lt;P&gt;Hence I would like to get your help.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please look at the following logs.&lt;/P&gt;
&lt;P&gt;PA missed 4 pings then restaring connection. So HA1 interface was down during 1 second.&lt;/P&gt;
&lt;P&gt;I remember take-over just happen after missed 4 pings.&lt;/P&gt;
&lt;P&gt;Probably, I have never seen the log for restarting connection.&lt;/P&gt;
&lt;P&gt;Was something on default behavior changed?&lt;/P&gt;
&lt;P&gt;OR I do not know something about HA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please let me know it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2016-05-07 00:01:34.763 +0900 Error: ha_ping_peer_miss(src/ha_ping.c:756): Missed 1 ping timeouts out of 3 (ha1)&lt;BR /&gt;2016-05-07 00:01:35.763 +0900 Error: ha_ping_peer_miss(src/ha_ping.c:756): Missed 2 ping timeouts out of 3 (ha1)&lt;BR /&gt;2016-05-07 00:01:36.763 +0900 Error: ha_ping_peer_miss(src/ha_ping.c:756): Missed 3 ping timeouts out of 3 (ha1)&lt;BR /&gt;2016-05-07 00:01:36.763 +0900 Error: ha_ping_peer_miss(src/ha_ping.c:763): We have missed 4 pings from the peer for group 1 (ha1), restarting connection&lt;BR /&gt;2016-05-07 00:01:36.765 +0900 Warning: ha_event_log(src/ha_event.c:47): HA Group 1: HA1 connection down&lt;BR /&gt;2016-05-07 00:01:36.765 +0900 debug: ha_peer_send_error(src/ha_peer.c:1641): Group 1 (HA1-MAIN): Sending errro message&lt;/P&gt;
&lt;P&gt;Error Msg&lt;BR /&gt;---------&lt;BR /&gt;flags : 0x2 (close:)&lt;BR /&gt;err code : Heartbeat ping failure (16)&lt;BR /&gt;num tlvs : 1&lt;BR /&gt; Printing out 1 tlvs&lt;BR /&gt; TLV[1]: type 5 (ERR_STRING); len 23; value:&lt;BR /&gt; 48656172 74626561 74207069 6e672066 61696c75 726500&lt;/P&gt;
&lt;P&gt;2016-05-07 00:01:36.765 +0900 Error: ha_peer_disconnect(src/ha_peer.c:1776): Group 1 (HA1-MAIN): peer connection error msg set: Heartbeat ping failure&lt;BR /&gt;2016-05-07 00:01:36.765 +0900 Group 1 (HA1-BKUP): new primary (error), going away from NONE&lt;BR /&gt;2016-05-07 00:01:36.765 +0900 Warning: ha_event_log(src/ha_event.c:47): HA Group 1: Control link running on HA1-Backup connection&lt;BR /&gt;2016-05-07 00:01:36.765 +0900 debug: ha_peer_send_primary(src/ha_peer.c:5292): Group 1 (HA1-BKUP): Sending primary message&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 09:15:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77779#M42708</guid>
      <dc:creator>KiCheon.Lee</dc:creator>
      <dc:date>2016-05-10T09:15:25Z</dc:date>
    </item>
    <item>
      <title>Re: HA1 interface was down during 1 second by restarting connection after heartbeat failure.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77805#M42712</link>
      <description>&lt;P&gt;Hi...Can you share the HA1 configuration settings. &amp;nbsp;Do you have HA1 heartbeat backup enabled? &amp;nbsp;How about HA1 backup link?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 13:32:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77805#M42712</guid>
      <dc:creator>rmonvon</dc:creator>
      <dc:date>2016-05-10T13:32:43Z</dc:date>
    </item>
    <item>
      <title>Re: HA1 interface was down during 1 second by restarting connection after heartbeat failure.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77911#M42743</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;These messages in themselves are 'normal', but they do indicate there is an issue&lt;/P&gt;
&lt;P&gt;The HA1 heartbeat was lost for 4 consecutive instances which causes an error state, the cause of this could be several different issues like a faulty network cable, an issue on the switch or router the HA1 is connected to or a remote issue on the HA peer. To make sure you should also verify the logs on the remote HA peer to see if did not have any problems at the time (like a process was restarted or something else happened)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;to prevent the cluster from failing over it's recommended to enable HA1 backup, which can also be accomplished on the management interface if you do not want to dedicate an interface to this. the management interface will only serve as a backup heartbeat to prevent a 'split-brain' where a dedicated interface could perform all the HA1 tasks&lt;/P&gt;</description>
      <pubDate>Wed, 11 May 2016 07:39:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ha1-interface-was-down-during-1-second-by-restarting-connection/m-p/77911#M42743</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-05-11T07:39:14Z</dc:date>
    </item>
  </channel>
</rss>

