- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-29-2019 08:44 AM
During the last PAN OS upgrade we had to failover between two firewalls in HA configuration. The failover time takes unusually amount of time during which the Internet access was unavailable. It took approximately 10-15 lost pings (to internet host) for passive to become an active. We had opened a case with PAN support and our zoom meeting was dropping, it was reconnecting after about 15 sec automatically. In one of my previous jobs the failover was taking very quickly, i would lost 1 or 2 pings 8.8.8.8..
Our HA setup is like this:
HA1 - over aux-1
HA2 - over eth1/10
Mode is active-passive/the config sync is enabled/passive link state is auto/preemptive is not setup/LACP-LLDP is not configured/Link and path monitorings are enabled/
Wondering if someone had simmilar experience and what was the solution to speed up the failover.