Palo Alto HA Active-Passive Lab | High Availability + Failover Testing (Real-World Setup)

In this lab, I walk through how to configure Palo Alto Networks High Availability (HA) in Active-Passive mode to provide firewall redundancy and automatic failover. This is a real-world enterprise scenario where two firewalls are deployed as a single logical unit to ensure continuous network availability. 🔧 What You’ll Learn: How Active-Passive HA works on Palo Alto firewalls HA1 (control link) configuration HA2 (data link) configuration for session synchronization HA group setup and election priority Configuration synchronization between firewalls Failover testing and validation Troubleshooting HA issues 🧠 Lab Topology: Outside Zone: 192.168.254.0/24 Inside Zone: 10.10.10.0/24 HA1 (Control): 1.1.1.1 / 1.1.1.2 HA2 (Data): 2.2.2.1 / 2.2.2.2 Two Palo Alto firewalls configured in Active-Passive mode 💡 Key Skills Demonstrated: Palo Alto NGFW High Availability configuration Redundant firewall design Session synchronization (HA2) Failover validation and testing Enterprise network resilience architecture 🚀 Real-World Use Cases: Data center firewall redundancy Enterprise high-availability network design Zero-downtime security infrastructure Critical application uptime protection --- 👨‍💻 About Me: I’m Travis Johnson, a Network Security Engineer specializing in Palo Alto firewalls, enterprise security operations, and real-world lab simulations aligned to production environments. --- 📌 If you're a recruiter or hiring manager looking for hands-on Palo Alto HA experience, feel free to connect. --- #PaloAlto #HighAvailability #FirewallEngineer #NetworkSecurity #CyberSecurity #NGFW #HA #SecurityEngineering