- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
06-09-2023 03:27 PM
Migrating from PA-820 SW ver. 10.0.2 to PA-440 SW ver. 10.1.8 and have been instructed to use Expedition.
Is the new FW config used as the Base Configuration in Expedition and the old FW config is the Configuration to Migrate?
Are there migration issues migrating to a newer SW ver?
Are there other considerations I need to make?
The current config is not complex and I will be cleaning up unused items during the migration.
06-13-2023 09:58 AM
I have not done that yet. I need confirmation that migration path is not an issue if the FWs have different OS versions.
06-18-2023 04:40 PM
Hi there, as per the advice from Lychiang you wouldn't necessarily need to use Expedition for this migration at all.
The export of the PA-820 config should work just fine when importing into the PA-440 series running 10.1, but the safest bet would be to upgrade your current environment to the latest 'preferred' release of 10.1 (10.1.10 - https://live.paloaltonetworks.com/t5/customer-resources/support-pan-os-software-release-guidance/ta-...) and then import into the PA-440 running this version.
This also ensures that the config before/after is 100%, including any difference in behaviour between the 10.0 and 10.1 versions of PAN-OS. When performing the migration, the only element that is changing would be the interface MAC addresses, unless you are running HA when even that would potentially remain the same.
HTH,
Graham
04-15-2024 12:34 AM
In response to this, if you are unable to upgrade the current version then try your new firewalls with the same version as your 820 FW has. You can upgrade the firewalls at later stage as well.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!