<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Risks of the AWS PA-VM license deactivation and reactivation in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/risks-of-the-aws-pa-vm-license-deactivation-and-reactivation/m-p/561773#M2007</link>
    <description>&lt;P&gt;Can we get anyone explained the potential issues or risks when deactivating the PA-VM in AWS and reactivating them with different auth code?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the use case:&lt;/P&gt;
&lt;P&gt;We had a few PA-VM firewalls deployed in the different segments of our AWS environment. In the past, the licensing process and onboarding with Panorama are all manual processes and there was no issue.&amp;nbsp; However, recently, the cloud platform teams strongly push the idea of the infrastructure-as-code approach and want to implement the automated processes for the firewall device licensing and onboarding processes, for the DR automation purposes.&lt;/P&gt;
&lt;P&gt;To achieve the goals, we have to break the existing big license pool and replace it with multiple smaller license pools and deactivate the licenses on the existing devices and reactivate them with new license codes.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My questions are&lt;/P&gt;
&lt;P&gt;- What might go wrong when we deactivate the devices and replace the licenses?&lt;/P&gt;
&lt;P&gt;- How can we check before the actions and avoid the potential worst scenarios?&lt;/P&gt;
&lt;P&gt;- What're the best options in the worst scenarios, without completely rebuild the firewall images?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Many thanks.&lt;/P&gt;</description>
    <pubDate>Mon, 16 Oct 2023 03:42:17 GMT</pubDate>
    <dc:creator>Rockey</dc:creator>
    <dc:date>2023-10-16T03:42:17Z</dc:date>
    <item>
      <title>Risks of the AWS PA-VM license deactivation and reactivation</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/risks-of-the-aws-pa-vm-license-deactivation-and-reactivation/m-p/561773#M2007</link>
      <description>&lt;P&gt;Can we get anyone explained the potential issues or risks when deactivating the PA-VM in AWS and reactivating them with different auth code?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the use case:&lt;/P&gt;
&lt;P&gt;We had a few PA-VM firewalls deployed in the different segments of our AWS environment. In the past, the licensing process and onboarding with Panorama are all manual processes and there was no issue.&amp;nbsp; However, recently, the cloud platform teams strongly push the idea of the infrastructure-as-code approach and want to implement the automated processes for the firewall device licensing and onboarding processes, for the DR automation purposes.&lt;/P&gt;
&lt;P&gt;To achieve the goals, we have to break the existing big license pool and replace it with multiple smaller license pools and deactivate the licenses on the existing devices and reactivate them with new license codes.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My questions are&lt;/P&gt;
&lt;P&gt;- What might go wrong when we deactivate the devices and replace the licenses?&lt;/P&gt;
&lt;P&gt;- How can we check before the actions and avoid the potential worst scenarios?&lt;/P&gt;
&lt;P&gt;- What're the best options in the worst scenarios, without completely rebuild the firewall images?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Many thanks.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Oct 2023 03:42:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/risks-of-the-aws-pa-vm-license-deactivation-and-reactivation/m-p/561773#M2007</guid>
      <dc:creator>Rockey</dc:creator>
      <dc:date>2023-10-16T03:42:17Z</dc:date>
    </item>
    <item>
      <title>Re: Risks of the AWS PA-VM license deactivation and reactivation</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/risks-of-the-aws-pa-vm-license-deactivation-and-reactivation/m-p/562196#M2009</link>
      <description>&lt;P&gt;Hi &lt;SPAN style="background: var(--ck-color-mention-background); color: var(--ck-color-mention-text);"&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/227341"&gt;@Rockey&lt;/a&gt;&lt;/SPAN&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Deactivating and reactivating PA-VMs with new licenses will result in downtime during the transition. I believe reactivating the firewall with a new license will result in a loss of the firewall's previous state. I would ensure that you have a backup of ALL configurations to restore them after reactivation.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;I would test this out on some non-prod/test accounts before working on prod firewalls to understand all that is needed for this migration.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 03:58:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/risks-of-the-aws-pa-vm-license-deactivation-and-reactivation/m-p/562196#M2009</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2023-10-18T03:58:35Z</dc:date>
    </item>
  </channel>
</rss>

