How do you clear the ARP cache? This is not too hard. Just SSH into the Palo Alto box. Then run the command:
skillen@PA-3020> clear arp all
All ARP entries are cleared.
skillen@PA-3020>
This is the retired Shane Killen personal blog, an IT technical blog about configs and topics related to the Network and Security Engineer working with Cisco, Brocade, Check Point, and Palo Alto and Sonicwall. I hope this blog serves you well. -- May The Lord bless you and keep you. May He shine His face upon you, and bring you peace.
Subscribe to:
Post Comments (Atom)
Does this have any negative impact on the firewall active sessions as we do this on active firewall or is it recommended to clear arp all on secondary node > Failover > clear arp all on primary node in an active/passive ?
ReplyDeleteNo, ARP table is replicated over to the passive unit.
DeleteWhen upgrading to 7.1, clear arp is recommended before upgrade. Do we do it right before install on the passive unit ? Or is it done on both units once before beginning the whole process ?
Deletei meant to ask the same question...When upgrading to 7.1, clear arp is recommended before upgrade. Do we do it right before install on the passive unit ? Or is it done on both units once before beginning the whole process ?
DeleteWhen upgrading to 7.1, clear arp is recommended before upgrade. Do we do it right before install on the passive unit ? Or is it done on both units once before beginning the whole process ?
DeleteI don't generally clear the arp table when doing an upgrade.
ReplyDelete