<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PA-200 to PA-440 running-config migration in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553252#M1699</link>
    <description>&lt;P&gt;Is it possible to migrate a running-config from a PA-200 to PA-440 smoothly or would we have to manually configure some settings?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;First issue is that the PA-200 is using PAN-OS version 8.x whilst the PA-440 is using PAN-OS 10.1, meaning we would likely have to use expedition based on research, correct?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Secondly seeing that the PA-200 has 4 ports that we have already configured, would it overwrite the ZTP port of the PA-440? What consequences would there be if we were to overwrite that interface?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are there also any other configurations we should have to configure manually due to differences between the 2 firewalls? E.G. We would have to configure at minimum 3 ethernet ports after a potential migration avoiding overlapping of interface 1, leaving ports 6 7 &amp;amp; 8 requiring configuration. Is it possible to a running-config at all between the 2 without encountering much errors?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are there any other considerations we should make whilst attempting to migrate the running-config of the PA-200 to PA-440?&lt;BR /&gt;&lt;BR /&gt;Any help is appreciated!&lt;/P&gt;</description>
    <pubDate>Thu, 10 Aug 2023 12:26:32 GMT</pubDate>
    <dc:creator>MYE-Support</dc:creator>
    <dc:date>2023-08-10T12:26:32Z</dc:date>
    <item>
      <title>PA-200 to PA-440 running-config migration</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553252#M1699</link>
      <description>&lt;P&gt;Is it possible to migrate a running-config from a PA-200 to PA-440 smoothly or would we have to manually configure some settings?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;First issue is that the PA-200 is using PAN-OS version 8.x whilst the PA-440 is using PAN-OS 10.1, meaning we would likely have to use expedition based on research, correct?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Secondly seeing that the PA-200 has 4 ports that we have already configured, would it overwrite the ZTP port of the PA-440? What consequences would there be if we were to overwrite that interface?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are there also any other configurations we should have to configure manually due to differences between the 2 firewalls? E.G. We would have to configure at minimum 3 ethernet ports after a potential migration avoiding overlapping of interface 1, leaving ports 6 7 &amp;amp; 8 requiring configuration. Is it possible to a running-config at all between the 2 without encountering much errors?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are there any other considerations we should make whilst attempting to migrate the running-config of the PA-200 to PA-440?&lt;BR /&gt;&lt;BR /&gt;Any help is appreciated!&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2023 12:26:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553252#M1699</guid>
      <dc:creator>MYE-Support</dc:creator>
      <dc:date>2023-08-10T12:26:32Z</dc:date>
    </item>
    <item>
      <title>Re: PA-200 to PA-440 running-config migration</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553264#M1700</link>
      <description>&lt;P&gt;Hello MYE-Support,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you manage the PA-200 using Panorama?&lt;/P&gt;
&lt;P&gt;If yes, you can add the PA-400, then put in the same template / DG as the PA-200.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Otherwise, you can export the config from the PA-200, import it to the PA-400, then commit / correct the errors (if any).&lt;BR /&gt;&lt;BR /&gt;Olivier&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2023 13:25:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553264#M1700</guid>
      <dc:creator>ozheng</dc:creator>
      <dc:date>2023-08-10T13:25:42Z</dc:date>
    </item>
    <item>
      <title>Re: PA-200 to PA-440 running-config migration</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553289#M1705</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/181602"&gt;@MYE-Support&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;You can upgrade the PA-220 to 10.1.&amp;nbsp; You do not have to use Expedition unless you want to.&amp;nbsp; It is very easy to export the config from PA-220 and import into PA-440.&amp;nbsp; I expect little or no errors on commit.&amp;nbsp; Please verify the management interface settings before commiting.&lt;/LI&gt;
&lt;LI&gt;You can disable ZTP on the command line before the import.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;I have exported and imported configs from many NGFWs with different models.&amp;nbsp; In most cases, the config is exactly the same.&amp;nbsp; Some people prefer to export and import the device state, but I haven't noticed any difference.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2023 15:36:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/pa-200-to-pa-440-running-config-migration/m-p/553289#M1705</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2023-08-10T15:36:35Z</dc:date>
    </item>
  </channel>
</rss>

