<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Globalprotect in A-A in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-in-a-a/m-p/346147#M86459</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/48354"&gt;@gksnl11&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Depends on how you have things configured. If you have these configured with Floating IP Addresses then the tunnel information is shared between each unit, but they otherwise will be completely independent of each other.&lt;/P&gt;
&lt;P&gt;Just keep in mind that you aren't really getting any additional capacity by going active/active, as if you have a hardware failure you all of the sudden don't have enough capacity for your entire environment if you can't work within the 2048 limit on the 3260s.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 01 Sep 2020 00:24:36 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2020-09-01T00:24:36Z</dc:date>
    <item>
      <title>Globalprotect in A-A</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-in-a-a/m-p/345967#M86428</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;I have some question.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If I have configure Active-Active HA and two GP portals with PA-3260.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;e.g. fw1's portal : 111.111.111.111&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;fw2's portal : 222.222.222.222&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;(limitation of SSL VPN concurrent user from PA3260: 2048 ssl-tunnels)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;When fw1,2 are in operation, can fw support about 2,000 user per one portal?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or do they share the number of tunnels?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;LI-SPOILER&gt;&amp;nbsp;&lt;/LI-SPOILER&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 29 Aug 2020 08:26:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-in-a-a/m-p/345967#M86428</guid>
      <dc:creator>gksnl11</dc:creator>
      <dc:date>2020-08-29T08:26:05Z</dc:date>
    </item>
    <item>
      <title>Re: Globalprotect in A-A</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-in-a-a/m-p/346147#M86459</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/48354"&gt;@gksnl11&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Depends on how you have things configured. If you have these configured with Floating IP Addresses then the tunnel information is shared between each unit, but they otherwise will be completely independent of each other.&lt;/P&gt;
&lt;P&gt;Just keep in mind that you aren't really getting any additional capacity by going active/active, as if you have a hardware failure you all of the sudden don't have enough capacity for your entire environment if you can't work within the 2048 limit on the 3260s.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Sep 2020 00:24:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/globalprotect-in-a-a/m-p/346147#M86459</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-09-01T00:24:36Z</dc:date>
    </item>
  </channel>
</rss>

