<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: updating ntp server from old to new IP Addresses in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565191#M2076</link>
    <description>&lt;P&gt;If I make changes via the local device then how do I sync it with panorama. or it recommended to make changes only via panorama and then push it to the devices&lt;/P&gt;</description>
    <pubDate>Fri, 10 Nov 2023 18:06:02 GMT</pubDate>
    <dc:creator>sambillings459</dc:creator>
    <dc:date>2023-11-10T18:06:02Z</dc:date>
    <item>
      <title>updating ntp server from old to new IP Addresses</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565189#M2075</link>
      <description>&lt;P&gt;Hello Experts,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;can you please help me with the query below?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have 2 Palo Alto NGFW in high availability and currently it is being managed via panorama. recently my organization has decided to decommission old ntp servers due to some issues. They have setup new NTP servers and provided us with the new IP addresses&amp;nbsp; which need to be updated on the 2 firewalls. And I'm not sure and confident enough&amp;nbsp; on the approach.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Do I have to update the new NTP server IPs via Panorama or via the local device itself. I just wanted to make sure I dont make any mistake and break the high availability.&lt;BR /&gt;&lt;BR /&gt;Does updating from Panorama will be easier or via the local device. I think if I update it from panorama it would be pushed to both the devices in high availability. OR if I push it via local device then how do I sync that config with panorama.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any help or suggestions on this is highly appreciable. These devices are bit critical and needs to be handled very carefully.&lt;/P&gt;</description>
      <pubDate>Fri, 10 Nov 2023 16:52:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565189#M2075</guid>
      <dc:creator>sambillings459</dc:creator>
      <dc:date>2023-11-10T16:52:54Z</dc:date>
    </item>
    <item>
      <title>Re: updating ntp server from old to new IP Addresses</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565191#M2076</link>
      <description>&lt;P&gt;If I make changes via the local device then how do I sync it with panorama. or it recommended to make changes only via panorama and then push it to the devices&lt;/P&gt;</description>
      <pubDate>Fri, 10 Nov 2023 18:06:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565191#M2076</guid>
      <dc:creator>sambillings459</dc:creator>
      <dc:date>2023-11-10T18:06:02Z</dc:date>
    </item>
    <item>
      <title>Re: updating ntp server from old to new IP Addresses</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565228#M2077</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/331070"&gt;@sambillings459&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks for post!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Since your Firewalls are managed by Panorama you should perform this change by Panorama by going to Templates &amp;gt; Device &amp;gt; [Select Template from drop down list] &amp;gt; Setup &amp;gt; Services. Once you change NTP servers to new IP addresses/FQDNs, commit and push to manage Firewalls. Select both Firewalls in HA while pushing it. The change will be performed by Panorama on both Firewalls in HA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would avoid making this change locally by overriding Panorama pushed configuration. Local configuration will not be synced back with Panorama. Local change also defeats purpose of Panorama.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Sat, 11 Nov 2023 00:27:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/updating-ntp-server-from-old-to-new-ip-addresses/m-p/565228#M2077</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2023-11-11T00:27:29Z</dc:date>
    </item>
  </channel>
</rss>

