Firewall local-in policies are supported for the dedicated HA management interface
To add local in polices for the dedicated management interface, enable ha-mgmt-inft-only and set intf to any. Enabling ha-mgmt-intf-only means the local-in policy applies only to the VDOM that contains the dedicated HA management interface.
config firewall local-in-policy
edit 0
set ha-mgmt-intf-only enable
set intf any
etc…
end