<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Transferring the config from defective PA850 to new PA 850 in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227831#M5851</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/259684"&gt;@weezy&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;I will recommend you to check with TAC so that they can help to validate the config and assist you accordingly.&lt;/P&gt;</description>
    <pubDate>Thu, 01 May 2025 03:24:08 GMT</pubDate>
    <dc:creator>mshekh</dc:creator>
    <dc:date>2025-05-01T03:24:08Z</dc:date>
    <item>
      <title>Transferring the config from defective PA850 to new PA 850</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227827#M5848</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm still newbie on PA configuration and I need your suggestion or help. We are replacing the defective PA 850 with new one and these are the steps that i'm thinking&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. On Panorama Remove the defective GBY PA-PRI850 on PANORAMA on template and device&amp;nbsp;&lt;BR /&gt;2. On Panorama under the device remove the Serial number of deflective&amp;nbsp; GBY PA-PRI 850 on PANORAMA&lt;BR /&gt;Then commit on Panorama&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3.On new PA OKI PRI 850 Setup MGMT IP of the new OKI FW replacement on YOK to x.x.x.x and setup the GW to .1 via CLI&amp;nbsp;&lt;BR /&gt;4. On new PA OKI PRI 850&amp;nbsp; Setup the DNS to x.x.x.x&lt;BR /&gt;5. On new PA OKI PRI 850&amp;nbsp; set deviceconfig system update-server updates.paloaltonetworks.com then ping to&amp;nbsp; ping host paloaltonetworks.com&lt;BR /&gt;6. will setup the HA IP either via CLI or via GIU of x.x.x.x&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;After setting up the MGMT ip on new OKI PA 850 via CLI, I will add it under devices and under templates then push it on Panorama.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now once the configs are push on new PA OKI 850 I will try to check the licenses or update it. I will also register the NEW PA 850 OKI serial number on paloaltonetworks.com&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then after that I will check the PAN OS if its need a downgrade/upgrade,&amp;nbsp; I will match it to current PAN OS of OKI PA SEC sw-version: 10.1.14-h10&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then after that will leave for 24hrs then the next day is BCP testing then the next days will be working with Masergy turning up SDWAN.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Now our SNR Engr said to me that there is missing steps and he said this.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;first you need to export the variable list BEFORE you delete the firewall. Once you setup the new firewall with MGMT, DNS, and point to panorama then you can add to Panorama then add to the device group and template group. Once you have it added there you will need to export the new variable list. It will be blank for the new firewall, copy the old values to it and re import. Then you can push the device group and template.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Now my question is once you remove the device and add the new one and push it on panorama will it automatically copy the variables? &lt;BR /&gt;I mean the variable list will not change so why I need to export and import ?&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Thank you for your all answers.&lt;/P&gt;
&lt;P&gt;&lt;LI-WRAPPER&gt;&lt;/LI-WRAPPER&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2025 03:09:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227827#M5848</guid>
      <dc:creator>weezy</dc:creator>
      <dc:date>2025-05-01T03:09:03Z</dc:date>
    </item>
    <item>
      <title>Re: Transferring the config from defective PA850 to new PA 850</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227829#M5849</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/259684"&gt;@weezy&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please follow the below kb to replace the device. Follow the step by step instruction and you will be able replace the device.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Clkn" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Clkn&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2025 03:12:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227829#M5849</guid>
      <dc:creator>mshekh</dc:creator>
      <dc:date>2025-05-01T03:12:07Z</dc:date>
    </item>
    <item>
      <title>Re: Transferring the config from defective PA850 to new PA 850</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227830#M5850</link>
      <description>&lt;P&gt;I read this document too but it doesn't say about the variables. That's the only step that i'm missing.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2025 03:15:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227830#M5850</guid>
      <dc:creator>weezy</dc:creator>
      <dc:date>2025-05-01T03:15:35Z</dc:date>
    </item>
    <item>
      <title>Re: Transferring the config from defective PA850 to new PA 850</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227831#M5851</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/259684"&gt;@weezy&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;I will recommend you to check with TAC so that they can help to validate the config and assist you accordingly.&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2025 03:24:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/transferring-the-config-from-defective-pa850-to-new-pa-850/m-p/1227831#M5851</guid>
      <dc:creator>mshekh</dc:creator>
      <dc:date>2025-05-01T03:24:08Z</dc:date>
    </item>
  </channel>
</rss>

