We need to migrate multiple firewall clusters to Panorama. I read the guides but there are still some questions about objects and IP addresses, certificates, etc...
Once I have migrated one cluster, what about the other ones if they have some objects with the same IP addresses (local networks, DMZ, etc..). Will they be imported ? Do I need to modify them first ? What about any certificate already existing ?
How do I rollback in case of trouble ?
In other words what are the best practices when migrating several HA pairs to Panorama ?
Thank you very much for your help.
There are best practices guides on this at https://docs.paloaltonetworks.com/panorama
The important thing to remember about rollback - TAKE A SNAPSHOT FIRST!
Save named configuration snapshot
If everything goes belly up, you can just revert to the snapshot and all changes will be rolled back.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!