<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Delaying upgrade between an HA pair in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/delaying-upgrade-between-an-ha-pair/m-p/1255459#M6951</link>
    <description>&lt;P&gt;Does any successfully perform their HA firewall upgrades in this manner?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Upgrade the Seconday(passive) firewall.&lt;/P&gt;
&lt;P&gt;2. Make Secondary firewall Active.&lt;/P&gt;
&lt;P&gt;3. Wait 1 or more days.&lt;/P&gt;
&lt;P&gt;4. Upgrade the Primary(now passive) firewall.&lt;/P&gt;
&lt;P&gt;5. Make the Primary firewall active.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It would bring us a lot more comfort knowing that we can easily switch to a different firewall (on the older version) in the event of an issue caused by the upgrade. Will HA syncs still work(sessions, configs, etc) This could be for minor or major versions.&lt;/P&gt;</description>
    <pubDate>Thu, 04 Jun 2026 20:58:06 GMT</pubDate>
    <dc:creator>jambulo</dc:creator>
    <dc:date>2026-06-04T20:58:06Z</dc:date>
    <item>
      <title>Delaying upgrade between an HA pair</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/delaying-upgrade-between-an-ha-pair/m-p/1255459#M6951</link>
      <description>&lt;P&gt;Does any successfully perform their HA firewall upgrades in this manner?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Upgrade the Seconday(passive) firewall.&lt;/P&gt;
&lt;P&gt;2. Make Secondary firewall Active.&lt;/P&gt;
&lt;P&gt;3. Wait 1 or more days.&lt;/P&gt;
&lt;P&gt;4. Upgrade the Primary(now passive) firewall.&lt;/P&gt;
&lt;P&gt;5. Make the Primary firewall active.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It would bring us a lot more comfort knowing that we can easily switch to a different firewall (on the older version) in the event of an issue caused by the upgrade. Will HA syncs still work(sessions, configs, etc) This could be for minor or major versions.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jun 2026 20:58:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/delaying-upgrade-between-an-ha-pair/m-p/1255459#M6951</guid>
      <dc:creator>jambulo</dc:creator>
      <dc:date>2026-06-04T20:58:06Z</dc:date>
    </item>
  </channel>
</rss>

