- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
03-30-2021 01:19 AM
2 firewalls configured with HA active/passive, And enabled preempt on both of firewalls
Everythings find, can synchronize configuration and session
firewall-A is active-firewall with priority 100
firewall-B is passive-firewall with priority 120
HA timer settings is recommended
But when I was testing for HA switch over by unplugged a interface on Active firewall (firewall-A), firewall-A moves into passive state, then active state again then passive state finally moves into "Preempt loop detected",
Actually I know that it will switchover 3 times after change firewall-A to suspend state
Is that a normal situation? Why does firewall-A still need to preempt itself as a active firewall even I did not put cable back (port still down)?
03-30-2021 04:45 AM
Have you checked everything in this article by Palo Alto for such issues?
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClhJCAS
06-27-2021 08:03 AM
Hi, I found a new useful ref:
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClcACAS
Seem when we choose shutdown mode, it will cause a preemt loop, solved by choose auto mode instead
but for layer2 environment should keep shutdown mode and disable preempt option
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!