Which states will a pair of firewalls be in if their HA Group ID is mismatched?
Which states will a pair of firewalls be in if their HA Group ID is mismatched?
In the event of a mismatched HA (High Availability) Group ID between a pair of firewalls, the expected states would be Active/Non-functional. When the HA Group ID is not matching, synchronization issues arise and one firewall typically enters a non-functional state, leading to the described Active/Non-functional status.
https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/high-availability/ha-firewall-states
Non-functional Active/Passive or Active/Active Error state due to a dataplane failure or a configuration mismatch, such as only one firewall configured for packet forwarding, VR sync or QoS sync. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/high-availability/ha-firewall-states
A https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PN3kCAG&lang=en_US%E2%80%A9 "After the commit, FW2 will go into a non-functional state."
Answer is A
Reference: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PN3kCAG&lang=en_US%E2%80%A9
Correct answer is A