惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

MyScale Blog
MyScale Blog
F
Fortinet All Blogs
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
D
Docker
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
爱范儿
爱范儿
V
Visual Studio Blog
Last Week in AI
Last Week in AI
WordPress大学
WordPress大学
aimingoo的专栏
aimingoo的专栏
小众软件
小众软件
L
LangChain Blog
Vercel News
Vercel News
阮一峰的网络日志
阮一峰的网络日志
IT之家
IT之家
P
Proofpoint News Feed
博客园_首页
D
DataBreaches.Net
T
The Blog of Author Tim Ferriss
The GitHub Blog
The GitHub Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
C
Check Point Blog
Engineering at Meta
Engineering at Meta
Microsoft Azure Blog
Microsoft Azure Blog

Megaport Blog

A Guide to NAT Gateway A Guide to Cloud Storage How the Data Center Is Evolving in 2026 What to Expect When Attending Your First Network Operator Group (NOG) Nine Ways to Connect to Cloud Using Private Connectivity Migrate Your On-premises to the Cloud: A Step-by-Step Guide How to Lower Your Egress Fees in 2026 How to Achieve Data Sovereignty in Europe Cisco and Megaport: Redefining the Edge of Modern Networking How to Reduce Latency in Your Multicloud Environment Introducing Megaport High-Speed Cross-Cloud Encryption Are Businesses Leaving the Cloud? Using Meraki and Megaport Virtual Edge for Multicloud Networking Equinix Metal® is Going Away: Here’s What You Can Do Introducing Megaport On-ramp as a Service Megaport’s Full Solution Portfolio Is Coming to India New Bare-metal GPU Instance Now Available with NVIDIA RTX Pro 6000 A Look Back at 2025: Megaport's Biggest Updates Megaport Expands Into India With Strategic Acquisition of Extreme IX Your 2026 Predictions From AWS re:Invent 2025 What’s Next for NaaS? Top Trends for 2026 What is IPsec? When to Move From Public Internet to Private Connectivity Megaport and Latitude.sh: Bringing Compute and Connectivity Together How to Improve Your Microsoft ExpressRoute Resilience with Megaport Connectivity Comparing Ways to Connect to AWS What is API-First Networking? The Hidden Cost of Running Cloud-Hosted SD-WAN for IaaS How to Overcome NaaS Integration Challenges Introducing SCION with Anapaya and Megaport
High Availability With Palo Alto Networks and Megaport
Ryan Tucker · 2024-03-28 · via Megaport Blog

By Ryan Tucker, Solutions Architect

Palo Alto Networks High Availability has been one of our most highly requested feature integrations with Megaport Virtual Edge. Now, it’s available. Here’s how you can use it for a more reliable, redundant network.

Architecting a network without operational resiliency would be like building a skyscraper without proper scaffolding. It might seem fine at first, but how will it survive over time or if there’s a severe weather event?

As multicloud, hybrid cloud, and cross-cloud setups become the norm and global workloads need to be in constant communication with each other, losing one connection can impact your entire network and compromise your bottom line. Having a network that’s always on has never been more important.

Having a resilient and highly available network does more than just protect against downtime and single points of failure – it allows you to customize your connectivity to suit each workload so you’re constantly getting the best possible performance.

If you’re already a Megaport customer, you know we take availability seriously. Many of our on-demand solutions are designed to improve and protect network availability across all of your cloud providers and global locations.

Megaport Virtual Edge (MVE) is a popular way for our customers to safeguard their network availability. With MVE you can deploy virtual instances like SD-WAN gateways, virtual routers, and virtual firewalls in minutes to improve performance and reliability.

Megaport Virtual Edge simplifies the deployment of diverse connections by establishing diversity zones. For maximum availability, customers may also deploy a pair of MVEs in different physical data centers, all within the same geographic metro region.

But for Palo Alto Networks customers, combining MVE with Palo Alto Networks VM-Series Next Generation Firewall (NGFW) unlocks a new level of availability.

About Palo Alto Networks VM-Series Virtual NGFW

Deploying VM-Series while leveraging its built-in High Availability (HA) functionality provides a robust solution that solves several firewall challenges, in particular session state and configuration synchronization, and orchestrated failover.

Palo Alto Networks VM-Series  Firewalls deployed on MVE can now be configured with Active-Active HA, combining these benefits with Megaport’s on-demand as-a-service deployment, global reach, and direct private connectivity to clouds and data centers – the scaffolding needed for your skyscraper to last.

“Megaport offers hybrid and multicloud connectivity at scale, and simplifies diverse connections so they’re easy to manage. We’re thrilled to partner with Megaport, providing this new integration that gives Palo Alto Networks customers additional options for deploying our platform, ultimately increasing reliability and availability.”

– Pamela Cyr, Vice President Technical Partnerships, Palo Alto Networks

Palo Alto Networks’ High Availability modes

VM-Series has two HA modes: Active-Active and Active-Passive. As the name suggests with Active-Passive, only one firewall is active at any one time while the secondary firewall’s interfaces are all disabled and allow no traffic to pass. But for this post, we’ll be focusing on Active-Active which is supported by MVE.

Active-Active allows both firewalls to be active and allow traffic to pass at the same time. If a firewall or monitored link fails, all traffic is redirected to the remaining device. This setup has the advantage of making the rest of the network aware of available paths, and allowing the full capacity of both firewalls to be used in a normal state.

A failover can be triggered either by a firewall failure, a monitored path becoming unavailable, or a failure of the HA links between devices. If a monitored path becomes unavailable, traffic is forwarded from the affected device to the device with the available path.

Learn more about PAN-OS Active-Active HA in Palo Alto TechDocs.

Get started

We think a VM-Series virtual NGFW HA architecture underpinned by MVE is a perfect choice for a virtualized network core or better multi cloud connectivity, and our customers agree – our support team regularly answers requests to help deploy these network setups.

We’ve created a step-by-step guide in our Docs Portal that walks you through setting up your own VM-Series HA architecture on MVE. Be sure to bookmark the doc to return to whenever you need.

Palo Alto Networks and Megaport Virtual Edge high availability solution diagram

Configure High Availability on Palo Alto Networks VM-Series Virtual Firewall.