Looking for a genuine factory-default PA-Series running-config.xml for audit-tool development

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Looking for a genuine factory-default PA-Series running-config.xml for audit-tool development

Hi everyone,

I'm developing a firewall configuration-audit/parser tool and I'm looking for a genuine factory-default Palo Alto Networks firewall configuration for testing.

I'm interested in any PA-Series firewall. A PA-5220 would be preferred, but configurations from other PA-Series models are also useful.

PAN-OS 11.x would be preferred, but configurations from other recent PAN-OS versions are also useful.

What I'm looking for:

- A configuration exported from a freshly factory-reset Palo Alto firewall
- Preferably the actual running-config.xml
- A candidate-config.xml or other genuine configuration export is also useful
- No PAN-OS software/image is required
- No license is required
- No customer configuration is required

Please remove/redact any sensitive or device-specific information, including:

- Serial numbers
- Public IP addresses
- Password hashes
- API keys/tokens
- Private keys
- Certificates where necessary
- Customer hostnames/domains
- VPN secrets
- Any other sensitive information

I'm specifically trying to understand what PAN-OS actually contains in a factory-default configuration versus configuration that only appears after an administrator configures a feature.

For example, I'm interested in the factory state of:

- deviceconfig
- management settings
- interfaces
- virtual routers
- zones
- security policies
- NAT
- address objects
- service objects
- security profiles
- authentication/AAA
- SNMP
- logging
- NTP/DNS
- Panorama settings
- GlobalProtect
- VPN/IPsec
- certificates
- default/system-created objects

I would particularly appreciate the actual running-config.xml exported immediately after factory reset / initial setup.

I'm NOT looking for PAN-OS software, firmware images, licenses, or unofficial download sources.

I only need a sanitized configuration exported from a legitimate Palo Alto firewall.

Any PA-Series model is useful. PA-5220 running PAN-OS 11.x would be especially helpful.

Thanks!

0 REPLIES 0
  • 14 Views
  • 0 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!