<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Migration of Panorama configuration in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/470640#M103016</link>
    <description>&lt;P&gt;Thank you and everyone for sharing your experience. I managed to migrate the configuration with no issues except that unfortunately the configuration file that PAN documentation mentioned in the process does not usually contain Shared objects which has caused commit issues. For everyone trying to migrate in the future, the only file that contains Shared objects is the one in the config bundle, you have to extract it and get the Panorama xml file which contains all configuration including shared objects.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 04 Mar 2022 23:02:44 GMT</pubDate>
    <dc:creator>bambox</dc:creator>
    <dc:date>2022-03-04T23:02:44Z</dc:date>
    <item>
      <title>Migration of Panorama configuration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/469053#M102885</link>
      <description>&lt;P&gt;I need to migrate the configuration of a Panorama X to another Panorama Y where I need to split several devices on their own panorama (Y). The plan according to several discussions is to export the config of current panorama X, import into Panorama Y while changing IP address, hostname, etc. This is the step where I am trying to see if it can be done more efficiently, I now plan to change the IP of the Panorama Servers section on the firewall to be the new IP of Panorama Y but my question is, can I for example, set the second field to be Panorama Y IP address, commit the changes, and once I am sure everything is working properly after pushing changes from Panorama Y, I then remove the IP address of Panorama X from the Panorama Servers sections or that could cause issues. Thanks.&lt;/P&gt;</description>
      <pubDate>Sun, 27 Feb 2022 17:55:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/469053#M102885</guid>
      <dc:creator>bambox</dc:creator>
      <dc:date>2022-02-27T17:55:38Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of Panorama configuration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/469927#M102974</link>
      <description>&lt;P&gt;Thank you for the post&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/170835"&gt;@bambox&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Exporting configuration from one Panorama and import to new one is from my point of view the easiest way. The only issue you might face is if you try to import configuration to different Panorama model where there are for example different interfaces. In this case, I would just manually edit the configuration file to match target Panorama. Also, I would recommend to have the same PAN-OS version between both Panorama units you are migrating.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the second part, I am afraid that this will not work. Firewall can be registered only to one Panorama set. For the setting in Firewall under: Device &amp;gt; Setup &amp;gt; Management &amp;gt; Panorama Settings &amp;gt; Panorama Servers, the secondary IP address is for the scenario where Panorama manager is an HA pair. In this case this is where you would configure Panorama standby unit. I do not think you can use this for Panorama migration purpose.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Wed, 02 Mar 2022 22:13:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/469927#M102974</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2022-03-02T22:13:01Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of Panorama configuration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/470061#M102986</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/170835"&gt;@bambox&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;I need to migrate the configuration of a Panorama X to another Panorama Y where I need to split several devices on their own panorama (Y). The plan according to several discussions is to export the config of current panorama X, import into Panorama Y while changing IP address, hostname, etc. This is the step where I am trying to see if it can be done more efficiently, I now plan to change the IP of the Panorama Servers section on the firewall to be the new IP of Panorama Y but my question is, can I for example, set the second field to be Panorama Y IP address, commit the changes, and once I am sure everything is working properly after pushing changes from Panorama Y, I then remove the IP address of Panorama X from the Panorama Servers sections or that could cause issues. Thanks.&amp;nbsp;&lt;FONT color="#000000"&gt;&amp;nbsp;&lt;/FONT&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;&lt;A href="https://www.subarunet.me/" target="_self"&gt;&lt;SPAN&gt;&lt;FONT color="#000000"&gt;Subarunet.com Login&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Legacy mode is no longer supported in PAN-OS 8.1 or later releases. If the old Panorama virtual appliance is in Legacy mode, you must change Panorama to Panorama mode before migrating to the new hypervisor in order to preserve the log settings and Log Collector forwarding configurations. Importing the configuration of the old Panorama in Legacy mode to a new Panorama in Panorama mode causes all log and log forwarding settings to be removed.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Mar 2022 04:20:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/470061#M102986</guid>
      <dc:creator>Kuhic567</dc:creator>
      <dc:date>2022-03-04T04:20:22Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of Panorama configuration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/470640#M103016</link>
      <description>&lt;P&gt;Thank you and everyone for sharing your experience. I managed to migrate the configuration with no issues except that unfortunately the configuration file that PAN documentation mentioned in the process does not usually contain Shared objects which has caused commit issues. For everyone trying to migrate in the future, the only file that contains Shared objects is the one in the config bundle, you have to extract it and get the Panorama xml file which contains all configuration including shared objects.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Mar 2022 23:02:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/migration-of-panorama-configuration/m-p/470640#M103016</guid>
      <dc:creator>bambox</dc:creator>
      <dc:date>2022-03-04T23:02:44Z</dc:date>
    </item>
  </channel>
</rss>

