01-09-2014 04:43 AM
hey
we have a cluster that is configured to download and install updaetd but we can see that it is only downloading them and doen not update,
where can i find related logs on the device? (PAN-OS 5)
01-10-2014 04:52 AM
Also make sure the multiple schedules are at different times so there are no conflicts.
01-10-2014 07:23 AM
Hello, Minow,
Do you have independent internet connectivity through both firewall's ( both HA node) management interface...? If so, then I would recommend to use download and install time slightly different on both nodes while "sync To Peer" is enabled.
You can verify the same information under Monitor >> System logs and CLI command mentioned below
PAN-FW> less mp-log paninstaller_content.log
PAN-FW> less mp-log ms.log
Thanks
01-12-2014 01:11 AM
hey
only the active machine has internet through a L3 interface,
how should the dynamic update page should look like?
should i configure download and install on both members? because i didnt see this is a synced configuration.
didnt find any interesting logs
thanks
01-12-2014 02:02 AM
by default firewall will use management interface for updates.
you can change this from Services tab(look if it is changed)
also read this for HA
01-12-2014 11:05 AM
Hello Minow,
You should enable sync-with peer option on the active firewall in order to push the downloaded database to the passive FW.
Which model of PAN FW you are having and what is the running PAN OS version..?
Could you please share CLI output FW>show system info
Thanks
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!