we did failover from secondary firewall to primary.
After failover Primary firewall all vpn tunnels came up and On passive firewall tunnel info up.
is it normal behavior on passive firewall tunnel info up ?
or passive firewall tunnle info and IKe info should down ?
active firewall below image ..
passive firewall below image we can able to see IKE info is down but tunnel info is up .
passive firewall I think both IKE and tunnel should be down.
is that normal on the passive firewall tunnel info up?
or GUI error?
We also have Active Passive Setup with IPSEC tunnel.
On passive PA we have all the Tunnel interface show as up.
Also status is green.
This is by design.
@Sonu_SinghYes, this is normal behavior as all active IPSEC SAs gets copied/syned to passive firewall from Active via HA2 link.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!
The Live Community thanks you for your participation!