This website uses cookies essential to its operation, for analytics, and for personalized content. By continuing to browse this site, you acknowledge the use of cookies. For details on cookie usage on our site, read our Privacy Policy
Dear All,
Below is summary of issue and resolution.
1. We added a new firewall to HA set-up.
2. HA was established properly.
3. While doing config sync from active to passive it was falling with error Client ikemgr phase 1 failure
Resolution:
Upon deep dive it was figure out that Master key between Active and passive firewall is mistmached.
Push the correct Master key from Panorama to Passive firewall.
Issue is fixed.
Tip:
If Panorama is running in the environment, best practice is to go to Panorama-> Managed Devices-> Summary
compare all the fields and check the status of all fields are ok or not.
While adding a , config sync was failing from active to passive firewall.
... View more
Dear All,
Is there any way to see the physical status of the HA1 Port through CLI or GUI ?
HA1-A and HA1-B
—Ethernet 10Mbps/100Mbps/1000Mbps ports used for HA1 traffic in both HA Modes.
For HA1 traffic
—Connect the HA1-A port on the first firewall directly to the HA1-A port on the second firewall in the pair or connect them together through a switch or routerr
... View more