Тёмный
No video :(

How to migrate a High Availability pair of PAN-OS firewalls into Panorama 

MB Tech Talker
Подписаться 2,8 тыс.
Просмотров 16 тыс.
50% 1

Опубликовано:

 

5 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 32   
@ShubhamSingh-yd8gz
@ShubhamSingh-yd8gz Месяц назад
Getting ready to implement this at a manufacturing plant for an automotive OEM this weekend. Watching this makes me feel really comfortable about the implementation. Very well done. Big thanks.
@justinwalsh5040
@justinwalsh5040 Месяц назад
excellent video very important advice regarding importing HA-pair that alot of other demos dont factor in
@oldmanmagic7237
@oldmanmagic7237 2 года назад
I just wanted to give you a shout out for this tutorial as it worked perfectly in a production environment. I've done several imports of solo firewalls, but never ones before with HA of which many things can go bad. Thank you and subscribed. -Matt
@MBTechTalker
@MBTechTalker 2 года назад
Brilliant! I’m glad the video was useful to you. Thanks for subscribing.
@MS-in3cl
@MS-in3cl 2 года назад
Really helpful.. I’m migrating a HA pair soon and this video helped me a lot..
@adamcarson4101
@adamcarson4101 2 года назад
Flawless demonstration. Implemented in production environment with zero issues.
@MBTechTalker
@MBTechTalker 2 года назад
Brilliant news Adam.
@TheKamaladmire1
@TheKamaladmire1 4 месяца назад
this is absolutely amazing ( simple and straight forward)
@benedictagyemang3862
@benedictagyemang3862 3 месяца назад
Very great training, thanks very much as you have save me a lot of time going through the docs.
@robertoospina10
@robertoospina10 5 месяцев назад
Excellent guide. and the background tunes are great too!
@Sri-vk7gx
@Sri-vk7gx Год назад
Hi Matt, This is Pure GOLD!! In production networks, most probably, we'd import an firewall/pair of firewalls into the running Panorama which would have already objects configured in it. Can you please post an video on how to fix the duplicate or overlapping IP address issue?
@devanandjha5284
@devanandjha5284 2 года назад
Excellent ! Thank you for uploading real scenarios video ..please see if there is possibility for cortex logging from PA Firewall
@gpietroforte
@gpietroforte Год назад
Thank you for the step by step.
@Saemundrthepure
@Saemundrthepure Месяц назад
Fantastic videos. I'm mostly watching for the info on templates because in importing all our firewalls into Panorama, we seem to have made a mess of them. But my question is about shared objects. One of those that we imported have a GREAT deal of objects that we imported as shared. You said in the video that, in the reverse situation, we can always move them into the shared objects... can you move them out of shared so that they are no longer shared? How would you do that? Thanks for all the great info.
@robust57
@robust57 Год назад
To avoid a potential outage wouldn't you want to push the bundle to the passive node first? Then failover to the passive node, ensure functionaity as a panorama managed firewall, then push the bundle to the previous active node? Pushing the bundle to both firewalls at once seems a bit risky.
@MS-in3cl
@MS-in3cl 2 года назад
Excellent demo!!.. I have 2 FW in active/passive and currently being managed by an old Panorama.. I would like to move these 2 FW to my new VM based Panorama.. Can you make a quick video on that as well?..
@oleksandrkotov1474
@oleksandrkotov1474 6 месяцев назад
Thank you!
@losecontroltv9536
@losecontroltv9536 Год назад
smashed the like button, sweet video. If we are importing HA FWs with multiple virtual systems, is it the same steps? Import one vsys and then the second one?
@ksrikanth7928
@ksrikanth7928 29 дней назад
Hi Matt, When adding devices to Panorama, the primary device is connected but the passive device is shown as disconnected. Can you help me with this problem?
@djsiva512
@djsiva512 2 года назад
Awesome video. Would these same steps apply to production HA firewalls that have a significant amount of rules and objects? Any caveats? This video helped me import two sets of greenfield devices, but I'd like to get the prod devices in as well. I don't subscribe to too many channels, but I definitely smashed that button on yours. Thanks again.
@MBTechTalker
@MBTechTalker 2 года назад
Yes, absolutely. I’ve used this exact process. Just be mindful about importing the local firewall objects into Panorama’s shared objects. Smaller firewall have limitations on how may shared objects it can store. knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLZUCA4&lang=en_US%E2%80%A9
@akhilbhattar1226
@akhilbhattar1226 10 месяцев назад
After following this procedure, my device group was fine but the template values in the local firewall all show overridden and I was not able to revert the interfaces config to template, it references the virtual router and vr was also overridden. Please help.
@djangosmissingfingers
@djangosmissingfingers Год назад
So even though the devices are in HA and everything is syncing, you still want to manually put both devices into the same device group / template stack?
@gjcopt
@gjcopt Год назад
at 8 mins 40 - you "remove all" from the second firewall template? Why? As this template is not in the renamed template stack? What should actually be done with this second firewall template now - it seems redundant should it just be deleted?
@muhammadatif2148
@muhammadatif2148 11 месяцев назад
Hi, can we update interface IP address from panorama , device template?
@hidelmarhuezo8576
@hidelmarhuezo8576 2 года назад
8:19 "cust1-fw01_stack" has the same HA configuration of cust1-fw01.......... but you deleted the HA configuration in each firewall (cust1-fw01 and cust1-fw02)... but you didnt delete the HA configuration in the stack.... Its that ok? I mean, cust1-fw2 is not going to recibe the fw1 HA config with this template?
@shamsugrace
@shamsugrace 8 месяцев назад
How to migrate Active-Active HA Pair?
@edgoodman01
@edgoodman01 Год назад
what you do if your secondary has no vip
@saywhaaaat
@saywhaaaat Год назад
Where did you get the eve-ng PA images?
@MS-in3cl
@MS-in3cl 2 года назад
Serial # for Palo alto firewall on EVE-NG is showing "unknown".. but we need FW serial # to onboard them on Panorama.. How can we achieve that on EVE-NG lab?
@qento456
@qento456 Год назад
you need a base license for vm pan-os and when you import that license serial number will appear on vm. You can request a trial license from Palo Alto Networks
@MS-in3cl
@MS-in3cl Год назад
@@qento456 Thanks for your response.. I did request a base license but they won't approve me as I am an existing Palo Alto customer.. But anyway I am think I am good..
Далее
Panorama Templates and Template Stacks
13:53
Просмотров 7 тыс.
Importing and removing Existing config into Panorama
8:31
MILLION JAMOASI 2024 4K
2:17:51
Просмотров 12 млн
Deploying a PAN-OS Panorama KVM image in EVE NG
9:50
Просмотров 4,4 тыс.
Panorama Baseline High Availability Configuration
12:20
Palo Alto Firewall Training | HA
18:13
Просмотров 27 тыс.
Importing Device Configurations Into Panorama
6:30
Просмотров 31 тыс.
Palo Alto Training | Panorama Device Groups
42:48
Просмотров 6 тыс.