Study Guide PCNSE in contradiction with the Technical doc.

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Study Guide PCNSE in contradiction with the Technical doc.

L1 Bithead

Hi !,

Just want to be sure please, The study guide page 181 mention that to use data port for HA1 link and management port as HA1 backup but it's not what is written in the technical doc... HA1 on Mgt port for PA without dedicated port and a data port for HA1 backup.

I guess the technical doc is correct.

All the best 

Ramin

4 REPLIES 4

L2 Linker

Hello @remy2vad ,

Thanks for your feedback.

Can you please share both the link and exact passage on that page for the study guide along with the tech doc that you are referencing?

Customer Success Engineer, NGFW

L1 Bithead

 

Hi,

Hope this helps:

 

From the sudy guide downloaded Jan 2023 version page 181:

 

5.3.6 HA interfaces
HA Links and Backup Links
The firewalls in an HA pair and cluster use HA links to synchronize data and maintain state
information. Some firewall models have dedicated HA ports—control link (HA1) and data link
(HA2)—while others require you to use the in-band ports as HA links. Firewalls in an HA cluster use
an in-band Layer 3 HA4 interface for cluster session synchronization as follows:
● For firewalls with dedicated HA ports, use these ports to manage communication and
synchronization between the firewalls.
● For firewalls without dedicated HA ports, use a data plane port for the HA port and use the
management port as the HA1 backup.

 

and this the link to the tech doc.

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/high-availability/ha-concepts/ha-links-an...

 

The firewalls in an HA pair use HA links to synchronize data and maintain state information. Some models of the firewall have dedicated HA ports—Control link (HA1) and Data link (HA2), while others require you to use the in-band ports as HA links.

 

  • For firewalls with dedicated HA ports, use these ports to manage communication and synchronization between the firewalls. For details, see HA Ports on Palo Alto Networks Firewalls.
  • For firewalls without dedicated HA ports such as the PA-220 and PA-220R firewalls, as a best practice use the management port for the HA1 port, and use the dataplane port for the HA1 backup.

 

L2 Linker

Hello @remy2vad ,

 

Thank you for the details, I will check on this with the documentation team and update back on here as soon as any updates come.

 

We appreciate you bringing this to our attention.

Customer Success Engineer, NGFW

Look forward !

  • 1029 Views
  • 4 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!