Any special considerations when importing HA firewall configurations into Panorama?
Are there any special considerations when importing the firewall configurations from an HA pair into Panorama?
Yes, there are many considerations that you need to be aware of.
By default, Panorama will create a new device group and a new template when the first firewall's configuration is imported.
When importing the second firewall's configuration, it too will require its own template, but it can be associated with the same device group as the first firewall.
The High-Availability configuration is part of the template and if both firewalls are associated with the same template, then they will both have the same HA configuration and in turn both members will try to become active when turned on. Be sure to double check the templates to avoid this happening.
For guidance on how to import a firewall's configuration into Panorama, please reference: