<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Up gradation of PANOS 8.0 to 8.1 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/up-gradation-of-panos-8-0-to-8-1/m-p/294008#M77641</link>
    <description>&lt;P&gt;We have PA-820 deployed in Active-Passive HA mode running PANOS 8.0. Today i received a notification that PANOS 8.0 will be End of Life on 31st Oct 2019. Hence I have to upgrade the PANOS of both firewalls, preemption is enabled on both firewall. Please share the procedure / best practices of upgrading OS in HA (Active-Passive) with no traffic outage.&lt;/P&gt;</description>
    <pubDate>Thu, 24 Oct 2019 06:55:19 GMT</pubDate>
    <dc:creator>Shuaib_Khalid</dc:creator>
    <dc:date>2019-10-24T06:55:19Z</dc:date>
    <item>
      <title>Up gradation of PANOS 8.0 to 8.1</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/up-gradation-of-panos-8-0-to-8-1/m-p/294008#M77641</link>
      <description>&lt;P&gt;We have PA-820 deployed in Active-Passive HA mode running PANOS 8.0. Today i received a notification that PANOS 8.0 will be End of Life on 31st Oct 2019. Hence I have to upgrade the PANOS of both firewalls, preemption is enabled on both firewall. Please share the procedure / best practices of upgrading OS in HA (Active-Passive) with no traffic outage.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Oct 2019 06:55:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/up-gradation-of-panos-8-0-to-8-1/m-p/294008#M77641</guid>
      <dc:creator>Shuaib_Khalid</dc:creator>
      <dc:date>2019-10-24T06:55:19Z</dc:date>
    </item>
    <item>
      <title>Re: Up gradation of PANOS 8.0 to 8.1</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/up-gradation-of-panos-8-0-to-8-1/m-p/294039#M77642</link>
      <description>&lt;P&gt;I manage an active/standby pair of PA-5220. Priority is 102 on standby and 101 on active, preemption and config sync enabled.&lt;BR /&gt;This is what I do:&lt;/P&gt;&lt;P&gt;- upgrade standby to new release&lt;BR /&gt;- let it run (as a standby) for a couple of hours&lt;/P&gt;&lt;P&gt;- set standby priority to 100, to switch roles with preemption&lt;/P&gt;&lt;P&gt;- let it run as active for some hours&lt;BR /&gt;- upgrade formerly active firewall to new release&lt;/P&gt;&lt;P&gt;- another couple of hours of monitoring...&lt;/P&gt;&lt;P&gt;- switch back priority to 102, to revert firewalls to original roles&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I find this procedure to be "smoother" on clients than the standard/recommended one, which says to suspend the active to force failover. This might be due to my network topology, anyway, which combines OSPF and a lack of pre-negotiation mechanisms. We are working on that.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Of course you can cut it shorter on monitoring, esp. when the minor release is high and you can trust PAN-OS review a bit more (e.g. 8.1.9 to 8.1.10). I only "move" between preferred releases.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Oct 2019 08:06:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/up-gradation-of-panos-8-0-to-8-1/m-p/294039#M77642</guid>
      <dc:creator>michelealbrigo</dc:creator>
      <dc:date>2019-10-24T08:06:03Z</dc:date>
    </item>
  </channel>
</rss>

