<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PanOS upgrade strategy in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/panos-upgrade-strategy/m-p/473308#M103283</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We are running PA firewalls + Panorama + Prisma Access in our environment. Our aim is to &lt;STRONG&gt;upgrade our cloud prisma plugin to 3.0 for additional features,&lt;/STRONG&gt; however we are not getting the best approach to do this.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Our existing environment is :&amp;nbsp;&lt;/P&gt;&lt;TABLE width="457"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD width="135"&gt;&lt;STRONG&gt;Device&lt;/STRONG&gt;&lt;/TD&gt;&lt;TD width="157"&gt;&lt;STRONG&gt;Current version&lt;/STRONG&gt;&lt;/TD&gt;&lt;TD width="165"&gt;&lt;STRONG&gt;Expected Version&lt;/STRONG&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Bunch of firewalls in HA pairs&lt;/TD&gt;&lt;TD&gt;9.1.8&lt;/TD&gt;&lt;TD&gt;10.1.4-h4&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Panorama&lt;/TD&gt;&lt;TD&gt;9.1.13&lt;/TD&gt;&lt;TD&gt;10.1.4-h4&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Cloud Services Plugin&lt;/TD&gt;&lt;TD&gt;2.1.0-h12.preferred&lt;/TD&gt;&lt;TD&gt;3.0 preferred&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Dataplane version&lt;/TD&gt;&lt;TD&gt;10.0.3&lt;/TD&gt;&lt;TD&gt;-&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;VM-series Plugin&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;2.0.4&lt;/TD&gt;&lt;TD&gt;-&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How should one approach this ?&lt;/P&gt;&lt;P&gt;(1) Upgrade the Panorama + Plugins gradually ( 9 ---&amp;gt; 10.0 ---&amp;gt;10.1 etc ) keeping the firewalls as is and then once Panorama + Plugins are upgraded we target the firewalls.&amp;nbsp;&lt;/P&gt;&lt;P&gt;(2) Upgrade the Panorama + Plugins + Firewalls all at once&amp;nbsp;&lt;/P&gt;&lt;P&gt;(3) Any other options ( we can have 0 downtime )&lt;/P&gt;</description>
    <pubDate>Tue, 15 Mar 2022 16:38:52 GMT</pubDate>
    <dc:creator>Kandarp_Desai</dc:creator>
    <dc:date>2022-03-15T16:38:52Z</dc:date>
    <item>
      <title>PanOS upgrade strategy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panos-upgrade-strategy/m-p/473308#M103283</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We are running PA firewalls + Panorama + Prisma Access in our environment. Our aim is to &lt;STRONG&gt;upgrade our cloud prisma plugin to 3.0 for additional features,&lt;/STRONG&gt; however we are not getting the best approach to do this.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Our existing environment is :&amp;nbsp;&lt;/P&gt;&lt;TABLE width="457"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD width="135"&gt;&lt;STRONG&gt;Device&lt;/STRONG&gt;&lt;/TD&gt;&lt;TD width="157"&gt;&lt;STRONG&gt;Current version&lt;/STRONG&gt;&lt;/TD&gt;&lt;TD width="165"&gt;&lt;STRONG&gt;Expected Version&lt;/STRONG&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Bunch of firewalls in HA pairs&lt;/TD&gt;&lt;TD&gt;9.1.8&lt;/TD&gt;&lt;TD&gt;10.1.4-h4&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Panorama&lt;/TD&gt;&lt;TD&gt;9.1.13&lt;/TD&gt;&lt;TD&gt;10.1.4-h4&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Cloud Services Plugin&lt;/TD&gt;&lt;TD&gt;2.1.0-h12.preferred&lt;/TD&gt;&lt;TD&gt;3.0 preferred&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Dataplane version&lt;/TD&gt;&lt;TD&gt;10.0.3&lt;/TD&gt;&lt;TD&gt;-&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;VM-series Plugin&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;2.0.4&lt;/TD&gt;&lt;TD&gt;-&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How should one approach this ?&lt;/P&gt;&lt;P&gt;(1) Upgrade the Panorama + Plugins gradually ( 9 ---&amp;gt; 10.0 ---&amp;gt;10.1 etc ) keeping the firewalls as is and then once Panorama + Plugins are upgraded we target the firewalls.&amp;nbsp;&lt;/P&gt;&lt;P&gt;(2) Upgrade the Panorama + Plugins + Firewalls all at once&amp;nbsp;&lt;/P&gt;&lt;P&gt;(3) Any other options ( we can have 0 downtime )&lt;/P&gt;</description>
      <pubDate>Tue, 15 Mar 2022 16:38:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panos-upgrade-strategy/m-p/473308#M103283</guid>
      <dc:creator>Kandarp_Desai</dc:creator>
      <dc:date>2022-03-15T16:38:52Z</dc:date>
    </item>
    <item>
      <title>Re: PanOS upgrade strategy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panos-upgrade-strategy/m-p/473323#M103284</link>
      <description>&lt;P&gt;Hi Kandarp,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I recommend going with the first option instead of all at once.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Important notes before upgrading:&lt;/P&gt;&lt;P&gt;•If using Panorama management in an HA configuration, HA must be set up before setting up Prisma Access management.&lt;/P&gt;&lt;P&gt;•Every Prisma Access cloud services plugin has a specific range of supported Panorama versions it is rated to work with.&amp;nbsp; Ensure that Panorama and the cloud services plugin are at compatible versions each time the plugin is installed or updated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Mar 2022 16:53:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panos-upgrade-strategy/m-p/473323#M103284</guid>
      <dc:creator>Mudhireddy</dc:creator>
      <dc:date>2022-03-15T16:53:27Z</dc:date>
    </item>
  </channel>
</rss>

