- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
03-16-2020 02:08 AM
Hi All,
Just wanted to confirm I have the process right.
We're running Panorama, M-100 appliance (32GB RAM), managing 3 pairs (6 no) of PA-3220 firewalls.
All currently running PAN-OS 8.1.5. Looking to upgrade to the next major stable release, currently listed as 9.0.6.
From what I have read, upgrade path is, Panorama first, 8.1.5 > 9.0.0 > 9.0.6, is this correct?
Once this is complete, same upgrade path for the physical firewalls, albeit the process relevant to your physical deployment i.e. ha active/standby process.
Ian
03-18-2020 05:48 AM
@IanBroadwayYes you can go to directly 9.0.6 from 8.1.5 but only thing you need to keep base version 9.0 downloaded. Once Base version is downloaded, then download target version and install it.
It is recommended path when moving from one feature release to the next is to download the base image for the next feature release version and then download and install your target maintenance release version. You must have both the base image and the maintenance release image on the firewall for installation to be successful.
Hope it helps!
Mayur
03-16-2020 02:41 AM
Hi @IanBroadway ,
Yup that's pretty much it.
Cheers !
-Kiwi.
03-16-2020 02:51 AM
Great thanks for confirming.
03-18-2020 05:20 AM
Sorry, I have been having a read of this article
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRrCAK
It would appear based on this I should be able to go from 8.1.5 > 9.0.6 direct?
03-18-2020 05:48 AM
@IanBroadwayYes you can go to directly 9.0.6 from 8.1.5 but only thing you need to keep base version 9.0 downloaded. Once Base version is downloaded, then download target version and install it.
It is recommended path when moving from one feature release to the next is to download the base image for the next feature release version and then download and install your target maintenance release version. You must have both the base image and the maintenance release image on the firewall for installation to be successful.
Hope it helps!
Mayur
02-19-2024 03:18 AM
@SutareMayur Hi, i'm trying to figure how to do the same with Panorama software deployment as panorama Use to push the firmware downloaded to panorama repository to the device and install it.
Pheraps have to push the base version checking "upload only without install" and then push and install the target maintenance ? Or there's a better feature to do this at once?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!