This post has been de-listed
It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.
I'm experiencing an issue on my firewall, I added a new core switch (CSW) in my environment and connected 2 fiber cables from the new CSW to my PA-5220, I configured an ethernet aggregate group and assigned to interfaces to that group. When working on the network I left the old connection from the old CSW to the PA in order to keep some internet connectivity. I first confirmed connection to the internet from the new CSW and it worked, but when I unplugged the old cable there was no internet, the only thing which could go out to the internet was the new CSW.
After checking and checking the firewall I found that on the GUI I added the new routes and deleted the old route but on the CLI the old routes are still there and the only new route added was the one to the CSW, I doubled checked the VR static route config on the GUI and the new ones are still there but not the old ones BUT on the CLI it's reversed, the old ones are there and the new ones are not. Is there something I did wrong by deleting the static route on the GUI or am I supposed to delete the route from the CLI?
Edit (Solved) So a little update on the issue, I stayed late after work in order to mess around with the firewall and prevent interruptions, I simply restarted the firewall and the old routes appeared, it seemed like there was a commit issue but it deleted the old routes on the GUI without fully commiting and couldn't cancel the commit, it gave me an error but forgot to save what error it was, I restarted the firewall and the old routes showed up again, after that i deleted the old ones and re-added the new ones, now it's fixed. Thank you all for your help!!
Subreddit
Post Details
- Posted
- 4 years ago
- Reddit URL
- View post on reddit.com
- External URL
- reddit.com/r/paloaltonet...