09-17-2022 08:53 PM
i am going to upgrade pan-os from 9.1.14-h4—>10.0.0–>10.0.11-h1–>10.1.0–>10.1.6-h6 for my pa 3260 device.But when the Pan-os upgraded to 10.0.0, i waited for two hours and the global protect client can connect the portal and gateway, but it can't access any network include Paloalto host ip, internal network and external network. i accessed the device by internal netowrk. i didn't find any special log and it seem normal. so i was not sure the issue and didn't continue to upgrade pan-os. At last i downgrade the pan-os to 9.1.14-h4,everything was ok.
So i want to know if pan-os 10.0.0 has this issue bug? can i continue to upgrade following 9.1.14-h4—>10.0.0–>10.0.11-h1–>10.1.0–>10.1.6-h6 ？
09-19-2022 05:28 AM
you can see which version is recommended here : https://live.paloaltonetworks.com/t5/customer-resources/support-pan-os-software-release-guidance/ta-...
right now 9.1.14-h4, 10.1.6-h6 and 10.2.2-h2 are "preferred"
10-25-2022 12:30 AM
i am going to upgrade an HA firewall pair from 9.1.6--》9.1.14--》10.0.11-h1--〉10.1.6-h6.
1).upgrade the secondary device once from 9.1.6--》9.1.14--》10.0.11-h1--〉10.1.6-h6
2) suspend local device in primary device, and then upgrade primary 9.1.6--》9.1.14--》10.0.11-h1--〉10.1.6-h6.
1)upgrade the secondary device from 9.1.6--》9.1.14
2)suspend local device in primary device, and then upgrade primary 9.1.6--》9.1.14
3)upgrade the secondary device once from 9.1.14--》10.0.11-h1
4)suspend local device in primary device and then upgrade primary 9.1.14--》10.0.11-h1
5)upgrade the secondary device from 10.0.11-h1--〉10.1.6-h6.
6)suspend local device in primary device,and then upgrade primary 10.0.11-h1--〉10.1.6-h6.
which method is the best one?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!