- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-15-2023 08:46 PM - edited 04-15-2023 09:33 PM
Hi PA(non-management interface) is connected to a router via a cable . What is minimus condition for the two device to ping each other?
1. ip address in interface are in same subnet,
2. interface associated with management profile to allow ping
3. interface type is L3
Any else?
The reason why i ask the question is the two device cannot see each other via arp. is this physical connection issue?
Thanks
04-16-2023 08:24 AM
Under "Device > Config Audit" at the bottom there are droppdowns where you can choose different configs to compare.
Running config - currently active config
Candidate config - new changed config that has not been committed yet
"Go" button will initiate compare task.
04-16-2023 02:13 AM
Hi @DavidyPalo ,
There are a couple more minimal conditions I would add.
Then the "show arp" command on the CLI should show a MAC address for the router. If not, you do not have layer 2 connectivity between the NGFW and router.
Thanks,
Tom
04-16-2023 07:32 AM - edited 04-16-2023 08:20 AM
Great!
After security policy is added, the ping can work. but after removing the security policy, the ping still can work. why it happen like that?
04-16-2023 08:24 AM
Under "Device > Config Audit" at the bottom there are droppdowns where you can choose different configs to compare.
Running config - currently active config
Candidate config - new changed config that has not been committed yet
"Go" button will initiate compare task.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!