<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: changing a gateway's management IP? in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/changing-a-gateway-s-management-ip/m-p/439602#M463</link>
    <description>&lt;P&gt;Thank you for posting question&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/37508"&gt;@JimMcGrady&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried to simulate this use case with one of the Firewall that is currently not in use. Below are my findings:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I tried to change Firewalls management interface IP address locally on the Firewall, after I committed changes, the Panorama's Automatic Connection Recovery has kicked in and rolled back the change to the original IP address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On the second attempt, I disabled the&amp;nbsp;Panorama's Automatic Connection Recovery feature from: Device &amp;gt; Setup &amp;gt; Management &amp;gt; Panorama Settings &amp;gt; [De-select] Enable automated commit recovery, then I tried again to change IP address and after commit was completed it worked well. After approximately 2 minutes, I have seen the Firewall in Panorama with new management IP address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You might have to restart management process on Firewall to restart log sending if you are using Panorama also for log collection. After this change, I have not seen any issue with Firewalls Device Group / Template Stack. Overall it was smooth.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Outside of Panorama, if you change Firewalls management IP address you might have to reflect this change in your monitoring system, tacacs/radius server, syslog server,...etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If my test has not covered the issue you are trying to address or you are looking into something else, let me know.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;</description>
    <pubDate>Fri, 08 Oct 2021 02:46:25 GMT</pubDate>
    <dc:creator>PavelK</dc:creator>
    <dc:date>2021-10-08T02:46:25Z</dc:date>
    <item>
      <title>changing a gateway's management IP?</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/changing-a-gateway-s-management-ip/m-p/439304#M416</link>
      <description>&lt;P&gt;If i have a gateway managed via Panorama, what would be the steps needed if that gateway's management IP needs to change?&lt;/P&gt;
&lt;P&gt;The actual change of IP is straight forward. But then what about the changes needed between Panorama and that gateway?&lt;/P&gt;</description>
      <pubDate>Thu, 07 Oct 2021 07:31:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/changing-a-gateway-s-management-ip/m-p/439304#M416</guid>
      <dc:creator>JimMcGrady</dc:creator>
      <dc:date>2021-10-07T07:31:36Z</dc:date>
    </item>
    <item>
      <title>Re: changing a gateway's management IP?</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/changing-a-gateway-s-management-ip/m-p/439602#M463</link>
      <description>&lt;P&gt;Thank you for posting question&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/37508"&gt;@JimMcGrady&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried to simulate this use case with one of the Firewall that is currently not in use. Below are my findings:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I tried to change Firewalls management interface IP address locally on the Firewall, after I committed changes, the Panorama's Automatic Connection Recovery has kicked in and rolled back the change to the original IP address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On the second attempt, I disabled the&amp;nbsp;Panorama's Automatic Connection Recovery feature from: Device &amp;gt; Setup &amp;gt; Management &amp;gt; Panorama Settings &amp;gt; [De-select] Enable automated commit recovery, then I tried again to change IP address and after commit was completed it worked well. After approximately 2 minutes, I have seen the Firewall in Panorama with new management IP address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You might have to restart management process on Firewall to restart log sending if you are using Panorama also for log collection. After this change, I have not seen any issue with Firewalls Device Group / Template Stack. Overall it was smooth.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Outside of Panorama, if you change Firewalls management IP address you might have to reflect this change in your monitoring system, tacacs/radius server, syslog server,...etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If my test has not covered the issue you are trying to address or you are looking into something else, let me know.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Fri, 08 Oct 2021 02:46:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/changing-a-gateway-s-management-ip/m-p/439602#M463</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2021-10-08T02:46:25Z</dc:date>
    </item>
  </channel>
</rss>

