<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Downgrade of Active - Passive PA-220 HA Pair in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/downgrade-of-active-passive-pa-220-ha-pair/m-p/996783#M5174</link>
    <description>&lt;P&gt;We have a pair of PA -220 (Active - Passive)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Currently on 10.2.11&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The customer want to downgrade these back to the 10.1 Feature Release.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They were on 10.1.13 earlier in the year, before we upgraded them to 10.2.9-h1 and then again to 10.2.11 to try and fix an issue with disk space etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I just want to double check the downgrade instructions.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Enable Config Sync &amp;amp; Preemptive is Configured on both FWs.&amp;nbsp; &amp;nbsp; I should disable both of these on both FWs and commit the change&amp;nbsp; ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So I select the 10.1.13 and select the config backup for this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then when it comes back, I then failover to this device, and downgrade the other device, again selecting the config backup.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then we can upgrade to 10.1.14-h6 (preferred release) ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Although I am being encouraged to upgrade to 10.1.13-h5 instead because of&amp;nbsp;&lt;SPAN data-olk-copy-source="MessageBody"&gt;bug PAN-268823 &lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 05 Dec 2024 17:32:15 GMT</pubDate>
    <dc:creator>G.Blake</dc:creator>
    <dc:date>2024-12-05T17:32:15Z</dc:date>
    <item>
      <title>Downgrade of Active - Passive PA-220 HA Pair</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/downgrade-of-active-passive-pa-220-ha-pair/m-p/996783#M5174</link>
      <description>&lt;P&gt;We have a pair of PA -220 (Active - Passive)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Currently on 10.2.11&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The customer want to downgrade these back to the 10.1 Feature Release.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They were on 10.1.13 earlier in the year, before we upgraded them to 10.2.9-h1 and then again to 10.2.11 to try and fix an issue with disk space etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I just want to double check the downgrade instructions.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Enable Config Sync &amp;amp; Preemptive is Configured on both FWs.&amp;nbsp; &amp;nbsp; I should disable both of these on both FWs and commit the change&amp;nbsp; ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So I select the 10.1.13 and select the config backup for this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then when it comes back, I then failover to this device, and downgrade the other device, again selecting the config backup.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then we can upgrade to 10.1.14-h6 (preferred release) ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Although I am being encouraged to upgrade to 10.1.13-h5 instead because of&amp;nbsp;&lt;SPAN data-olk-copy-source="MessageBody"&gt;bug PAN-268823 &lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 17:32:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/downgrade-of-active-passive-pa-220-ha-pair/m-p/996783#M5174</guid>
      <dc:creator>G.Blake</dc:creator>
      <dc:date>2024-12-05T17:32:15Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade of Active - Passive PA-220 HA Pair</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/downgrade-of-active-passive-pa-220-ha-pair/m-p/996866#M5175</link>
      <description>&lt;P&gt;&lt;STRONG&gt;It's&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;better to open a&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;support&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;case&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;for a downgrade,&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;but&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;it's&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;usually&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;recommended&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;to upgrade&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;instead&lt;/STRONG&gt;&lt;SPAN&gt; of downgrade.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2024 05:01:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/downgrade-of-active-passive-pa-220-ha-pair/m-p/996866#M5175</guid>
      <dc:creator>Ashish_Kushwaha</dc:creator>
      <dc:date>2024-12-06T05:01:05Z</dc:date>
    </item>
  </channel>
</rss>

