Remove a single firewall node from an NGFW cluster using Strata Cloud Manager
without disrupting the remaining active node.
| Where Can I Use This? | What Do I Need? |
|
|
- Strata Cloud Manager Pro
- An existing NGFW cluster with two member firewalls
|
Use this procedure to remove a single firewall from an active NGFW cluster — for
planned maintenance, debugging, or hardware replacement — while the remaining node
continues passing traffic. The recommended practice is to remove Node 2 and leave
Node 1 active.
The Select Devices
screen used in this procedure doesn't warn you before a device selection change
reassigns a Node ID. Changing a firewall's assigned Node ID — even
unintentionally — clears that firewall's configuration and immediately triggers a
mandatory reboot.
What happens when a Node ID changes: Reassigning a
firewall's Node ID is a platform identity change, not a simple configuration
edit. When Strata Cloud Manager pushes the change, the firewall clears its
previously pushed configuration, migrates local settings to the new identity,
and immediately initiates a system reboot — by design, whether the change was
intentional or accidental.
Verify serial numbers carefully before you save
any change on this screen.