- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
12-29-2021 06:50 AM
Hi Folks,
We had recently migrated HA firewall to Panorama using the below documentation
12-29-2021 06:39 PM
Thank you for the post @tamilvanan
First of all, I agree with you that it is better and safer to managed HA locally instead of using Panorama. Overall, your design of Templates/Template Stack looks good and to me it looks functional. The only thing I am worried about is pushing of setting from Template (HA setting, interfaces,..) will not be applied if Firewall has already existing overlapping configuration. You will have to override it locally to apply Panorama pushed configuration: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008UgMCAU&lang=en_US%E2%80%A... Alternative approach is to select: "Force Template Values" while pushing configuration, but this involves risk that local config that is not included in Template will be wiped, so I would go with overriding it locally as this is only one time job.
Could you please post back how well this went? I am wondering how smooth it was.
Kind Regards
Pavel
12-29-2021 11:17 PM
Whatever you have mentioned had worked well in my case. I had overridden local settings on firewall first. Just sharing my experience. Thank you
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!