When a High Availability Pair(HA Pair) is onboarded in NSM, the Primary Firewall gets synced and connected but the Secondary Firewall shows not connected under Zero Touch Status.
In certain instances, when an HA Pair gets acquired on NSM, Primary Zero Touch Status shows up as "Connected" but Secondary as "Disconnected".
We could see the following error messages for Disconnected Zero Touch Status for secondary firewall in NSM:
Steps to troubleshoot for the following error messages:
1. Auth code missing or connection authentication failed or missing license keyset:
-connection-issue-with-NSM-kA1VN0000000L9O0AU-0EMVN00000EoQ2p.jpg)
URL for diag page for Gen6 firewalls: https://x.x.x.x/diag.html
URL for diag page for Gen7 firewalls: https://x.x.x.x/sonicui/7/m/diag
CAUTION: Gen 7 firewall will reboot as soon as we Click "Reset Licenses and Security Services Info" in diag. Make sure to do this activity during maintenance window.
If issue persists after license reset and re register, contact SonicWall Technical Support.
2. no Zero touch heartbeat response OR ZT status for Secondary Standby unit shows "Unknown" in NSM.
-connection-issue-with-NSM-kA1VN0000000L9O0AU-0EMVN00000EoQ35.jpg)
-connection-issue-with-NSM-kA1VN0000000L9O0AU-0EMVN00000EoQ33.jpg)
Ideal Zero Touch Status for Primary and Secondary Firewall in NSM should show like this:
-connection-issue-with-NSM-kA1VN0000000L9O0AU-0EMVN00000EoQ2s.png)