Add 2nd FW to Panorama and enable HA with current FW

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Add 2nd FW to Panorama and enable HA with current FW

L0 Member

I have one PA-500 connected and mostly managed by Panorama. 7.1.20.

My question and goal is to add a 2nd FW and make both HA and managed by Panorama.

Is there a process for this ? Step - by -Step

 

Thanks

Matt S.

1 accepted solution

Accepted Solutions

I printed this out and the proccess worked great.

Thank You!

matt50320bike

View solution in original post

2 REPLIES 2

L7 Applicator

Hi @Matt50320bike

 

  1. Connect the same interfaces as on your first PA-500 to your second one
  2. Connect HA1 and HA2 between the two devices
  3. Setup Mgmt access for the second PA-500
  4. Install PAN-OS 7.1.20
  5. Configure HA locally on both firewalls (make sure the first one will be active with setting the priority accordingly)
  6. Commit the configuration on both firewalls
  7. Sync the configuration from the first to the second one (can be done from the Dashboard)
  8. Add the second PA-500 to panorama and add it to the same devicegroup and template as the first PA-500
  9. Commit to panorama
  10. Push the config to the firewall
  11. Do a failovertest in a maintenance window to verify that everything is cabled correctly and works expected without connection interruptions

I printed this out and the proccess worked great.

Thank You!

matt50320bike

  • 1 accepted solution
  • 2873 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!