Hi Nitesh, You are almost correct. Follow bellow instructions. 1.) Created new VLAN 2.) Created new VLAN interface (with L3-forwarding enabled) 3.) Placed new VLAN interface into appropriate security zone (L3-Trust in my configuration) 4.) Assigned new VLAN interface an IP Address (192.168.1.1/24 in my config) 5.) Configured 2 firewall ports as "Layer 2" and placed them into the newly created VLAN from step #1 Commit On the switch side, I created a vlan in a Brocade switch with 3 access ports. I also enabled spanning-tree in this VLAN. Of the 3 ports, 2 go to the firewall and one to a test laptop. In this configuration, everything works fine! It takes 30-45 seconds to fail over, and about 15s to fail back - which is expected for standard spanning-tree behavior. For more reference refer bellow documents. Re: Redundant links interface failover on PA500 Regards, Hardik Shah
... View more