<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to move firewalls between Panoramas in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/how-to-move-firewalls-between-panoramas/m-p/519455#M1174</link>
    <description>&lt;P&gt;All NGFWs within a company are currently managed centrally from a central Panorama. The question is how to move a subsidiary's (business unit's) NGFWs and all related configurations (device groups, templates, template stackss, shared objects, etc.) from this central Panorama to a new Panorama installed locally at the subsidiary? We couldn't find a description for this use case, what are the steps to move some firewalls from one Panorama to another so that the moved firewall's operation is not interrupted and they can be managed from the new Panorama after the move?&lt;/P&gt;</description>
    <pubDate>Thu, 27 Oct 2022 19:46:51 GMT</pubDate>
    <dc:creator>szabo_sandor</dc:creator>
    <dc:date>2022-10-27T19:46:51Z</dc:date>
    <item>
      <title>How to move firewalls between Panoramas</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/how-to-move-firewalls-between-panoramas/m-p/519455#M1174</link>
      <description>&lt;P&gt;All NGFWs within a company are currently managed centrally from a central Panorama. The question is how to move a subsidiary's (business unit's) NGFWs and all related configurations (device groups, templates, template stackss, shared objects, etc.) from this central Panorama to a new Panorama installed locally at the subsidiary? We couldn't find a description for this use case, what are the steps to move some firewalls from one Panorama to another so that the moved firewall's operation is not interrupted and they can be managed from the new Panorama after the move?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Oct 2022 19:46:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/how-to-move-firewalls-between-panoramas/m-p/519455#M1174</guid>
      <dc:creator>szabo_sandor</dc:creator>
      <dc:date>2022-10-27T19:46:51Z</dc:date>
    </item>
    <item>
      <title>Re: How to move firewalls between Panoramas</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/how-to-move-firewalls-between-panoramas/m-p/519486#M1175</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/173094"&gt;@szabo_sandor&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You mentioned moving "all related configurations".&amp;nbsp; So, I assume there is no configuration on the new Panorama.&amp;nbsp; In that case, you would remove the NGFW from Panorama following this document -&amp;gt; &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cmd6CAC" target="_blank" rel="noopener"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cmd6CAC&lt;/A&gt; being very sure to check the boxes to import the configurations locally.&amp;nbsp; You then have a locally managed NGFW.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The next step would be to follow this doc -&amp;gt; &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CloRCAS" target="_blank" rel="noopener"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CloRCAS&lt;/A&gt; to import your locally managed NGFW to Panorama.&amp;nbsp; Be very sure to follow step 5 and use the Panorama &amp;gt; Setup &amp;gt; Operations process to push the initial config to the device after import.&amp;nbsp; This step actually deletes the local policies and objects on the NGFW so that you do not get conflict errors. Do not use the Commit menu until afterwards.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;One step that is not in the 2nd doc is that is you want the Template values (Network and Device configuration) to be managed by Panorama you need to select Force Template Values when you do your 1st Commit and Push (or Commit to Panorama and Push to Devices).&amp;nbsp; Then all your policies, objects, network, and device configuration will be managed from Panorama.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Fri, 28 Oct 2022 00:40:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/how-to-move-firewalls-between-panoramas/m-p/519486#M1175</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2022-10-28T00:40:35Z</dc:date>
    </item>
  </channel>
</rss>

