Upgrade to PAN-OS 8.0.1

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Upgrade to PAN-OS 8.0.1

L2 Linker

Hi everyone,

I Iam about to take the plunge and update from 7.1.7 to 8.1

I have read a few of the guides out there such as :

8.0 upgrade/downgrade considerations

PAN‐OS® 8.0 Release Notes

 

My questions I have are 

1. Do I need to upgrade the global protect client , which is currently version 3.1.5 ?

2. Do I need to update the User-Id agent running on my Domain Controller  , which is currently 7.0.7-13

3. Should i be concerned about https://live.paloaltonetworks.com/t5/General-Topics/PAN-OS-8-0-Decryption-Issue-with-Firefox-and-Chr....

 

Paul

 

 

1 accepted solution

Accepted Solutions

Community Team Member

Hi @PaulBrock,

 

Assuming you mean 8.0.1 and not 8.1 which will be a while before it will be released 😄

 

From the 8.0 release notes :

The following minimum software versions are supported with PAN‐OS 8.0 :

 

2017-03-29_09-46-49.jpg

 

As for question #3 I'm not sure.  Maybe other users can fill you in on that.

 

Cheers !

-Kiwi.

LIVEcommunity team member, CISSP
Cheers,
Kiwi
Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

View solution in original post

5 REPLIES 5

Community Team Member

Hi @PaulBrock,

 

Assuming you mean 8.0.1 and not 8.1 which will be a while before it will be released 😄

 

From the 8.0 release notes :

The following minimum software versions are supported with PAN‐OS 8.0 :

 

2017-03-29_09-46-49.jpg

 

As for question #3 I'm not sure.  Maybe other users can fill you in on that.

 

Cheers !

-Kiwi.

LIVEcommunity team member, CISSP
Cheers,
Kiwi
Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

Hi Kiwi,

Many thans for taking the time to eply  , I missed that document along the way.

 

I was wondering. as I not going to be intsalling 8.0.1 for a week or two, can i still update my 

uia on the Domain controller to version 8 now or do i have to wait ?

and the same question for the global protect agent can i make the 4.0 version active prior to the upgrade ?

 

Paul 

As per

 

https://www.paloaltonetworks.com/documentation/80/pan-os/ua-80-release-notes/user-id-agent-8-0-relea...

 

The User-ID agent is compatible with PAN-OS 8.0 and earlier PAN-OS releases that are still supported by Palo Alto Networks.

 

Obviously you may not gain any additional functionality that requires PANOS 8, but should still be compatible. Also the minimum Windows Server version has been bumped to 2008.

 

Same rules should apply to GlobalProtect (and I believe PAN-OS 8 requires 4.0.)

--
CCNA Security, PCNSE7

L1 Bithead

Hi every one , 

I already updated my Paloalto to 8.0.1 but the user ID agent that i have doesn't work and the user name of users doesn't join to my device it's apears when i do search but when i put the rule and using the user name it doesn't work unless i use the personal IP of users , 

can any one help me with that please ???

 

thanks in advance 

 

Hello,

Make sure the account you are using for the User-id has the proper permissions:

 

https://www.paloaltonetworks.com/documentation/71/pan-os/pan-os/user-id/create-a-dedicated-service-a...

 

Regards,

  • 1 accepted solution
  • 4015 Views
  • 5 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!