<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Palo Alto HA firewalls  like for like replace in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577809#M2682</link>
    <description>&lt;P&gt;About the passwords&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;How are Passwords Stored in the Configuration Files?&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;The passwords in configuration files are either stored as a salted hash or in encrypted form (AES-256).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Is it possible to recover the passwords?&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;It is not possible to recover the plain text versions of user passwords, pre-shared keys for IPSec, or private keys associated with certificates.&lt;/P&gt;</description>
    <pubDate>Tue, 20 Feb 2024 22:43:42 GMT</pubDate>
    <dc:creator>Alejandro_Hernandez</dc:creator>
    <dc:date>2024-02-20T22:43:42Z</dc:date>
    <item>
      <title>Palo Alto HA firewalls  like for like replace</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577764#M2676</link>
      <description>&lt;P&gt;Hello Guys,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a project to replace palo alto with another two palos they are configured as HA and i want to get all the cli commands in one go and past it into the new firewalls ? will that work?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;who knows what is the command that we could do that please?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Feb 2024 15:11:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577764#M2676</guid>
      <dc:creator>New-Memeber</dc:creator>
      <dc:date>2024-02-20T15:11:33Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto HA firewalls  like for like replace</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577807#M2680</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/225428"&gt;@New-Memeber&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You will follow the next steps&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2 class="fieldLabel"&gt;Resolution&lt;/H2&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV class="lia-message-template-content-zone"&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;SPAN&gt;Run the following command to view the configuration:&lt;/SPAN&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN&gt;"set" format:&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;set cli config-output-format set&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;"xml" format:&amp;nbsp; &amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;set cli config-output-format xml&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Enter configure mode:&amp;nbsp;&amp;nbsp;&amp;gt;&amp;nbsp;&lt;STRONG&gt;configure&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/OL&gt;
&amp;nbsp;
&lt;OL start="3"&gt;
&lt;LI&gt;&lt;SPAN&gt;Enter&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;show&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;to see the complete configuration.&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;You can also view certain components, such as "show network interface".&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&lt;/LI&gt;
&lt;/OL&gt;
&lt;SPAN&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;The output of&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;show&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;is not necessarily the sequence to execute the commands. A command that appears at the top may reference something defined later in the listing.&lt;/SPAN&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The following example demonstrates how to view a configuration in "set" format.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;P&gt;&lt;LI-WRAPPER&gt;&lt;/LI-WRAPPER&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE class="ckeditor_codeblock"&gt;&lt;SPAN&gt;&lt;STRONG&gt;&amp;gt; set cli config-output-format set
&amp;gt; configure
&lt;/STRONG&gt;Entering configuration mode
[edit]

&lt;STRONG&gt;# show
&lt;/STRONG&gt;
set mgt-config devices localhost.localdomain ip 127.0.0.1
set mgt-config user admin phash fnRL/G5lXVMug
set mgt-config user admin permissions role-based superuser yes

set zone L3-Trust network layer3 ethernet1/3
set zone L3-Trust network layer3 ethernet1/4
set zone L3-Trust network layer3 ethernet1/5
set zone L3-Trust enable-user-identification no

set rulebase security rules rule1 from any
set rulebase security rules rule1 to any
set rulebase security rules rule1 source any
set rulebase security rules rule1 destination any
set rulebase security rules rule1 service any
set rulebase security rules rule1 application any
set rulebase security rules rule1 action allow&lt;/SPAN&gt;&lt;/PRE&gt;</description>
      <pubDate>Tue, 20 Feb 2024 22:03:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577807#M2680</guid>
      <dc:creator>Alejandro_Hernandez</dc:creator>
      <dc:date>2024-02-20T22:03:17Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto HA firewalls  like for like replace</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577808#M2681</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;Alejandro,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;thank you for your reply.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I was talking about a command that would show the whole configurations after run show without keep entering the tap.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Also my second question are we able to see the passwords without been encrypted on the running config as we can see it on Cisco ASA please?&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Tue, 20 Feb 2024 22:31:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577808#M2681</guid>
      <dc:creator>New-Memeber</dc:creator>
      <dc:date>2024-02-20T22:31:31Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto HA firewalls  like for like replace</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577809#M2682</link>
      <description>&lt;P&gt;About the passwords&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;How are Passwords Stored in the Configuration Files?&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;The passwords in configuration files are either stored as a salted hash or in encrypted form (AES-256).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Is it possible to recover the passwords?&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;It is not possible to recover the plain text versions of user passwords, pre-shared keys for IPSec, or private keys associated with certificates.&lt;/P&gt;</description>
      <pubDate>Tue, 20 Feb 2024 22:43:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-ha-firewalls-like-for-like-replace/m-p/577809#M2682</guid>
      <dc:creator>Alejandro_Hernandez</dc:creator>
      <dc:date>2024-02-20T22:43:42Z</dc:date>
    </item>
  </channel>
</rss>

