Panorama HA Config question

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Panorama HA Config question

L3 Networker

Hi All,

 

Quick question on my new deployment for Panorama. I have a HA pair with unique hostnames and IP addresses with firewall as an active passive pair. The migration steps state the following:

Do not combine the HA firewall pair in to a single template if a unique Hostname, management IP address, or HA configuration is configured for each HA peer. You may also configure a unique Hostname, management IP address, or HA configuration locally on the firewalls.

 

What do I need to do to accommodate this? I may be having a "stupid" moment but the documentation is not 100% clear (bad night and 6.30am). Using this document:

https://docs.paloaltonetworks.com/panorama/8-1/panorama-admin/manage-firewalls/transition-a-firewall...

 

Regards

 

Adrian

1 REPLY 1

Cyber Elite
Cyber Elite

you cant use the same template for hostname, ip and HA (priority)  for both members as that would cause a conflict, so there are 2 options:

- you create a unique template for each member that contains it's HA config, ip and hostname, or

- you dont include these parameters in the template and configure them locally

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization
  • 2338 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!