- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-23-2026 11:12 PM
Hi everyone,
I'm developing a firewall configuration-audit/parser tool and I'm looking for a genuine factory-default Palo Alto Networks firewall configuration for testing.
I'm interested in any PA-Series firewall. A PA-5220 would be preferred, but configurations from other PA-Series models are also useful.
PAN-OS 11.x would be preferred, but configurations from other recent PAN-OS versions are also useful.
What I'm looking for:
- A configuration exported from a freshly factory-reset Palo Alto firewall
- Preferably the actual running-config.xml
- A candidate-config.xml or other genuine configuration export is also useful
- No PAN-OS software/image is required
- No license is required
- No customer configuration is required
Please remove/redact any sensitive or device-specific information, including:
- Serial numbers
- Public IP addresses
- Password hashes
- API keys/tokens
- Private keys
- Certificates where necessary
- Customer hostnames/domains
- VPN secrets
- Any other sensitive information
I'm specifically trying to understand what PAN-OS actually contains in a factory-default configuration versus configuration that only appears after an administrator configures a feature.
For example, I'm interested in the factory state of:
- deviceconfig
- management settings
- interfaces
- virtual routers
- zones
- security policies
- NAT
- address objects
- service objects
- security profiles
- authentication/AAA
- SNMP
- logging
- NTP/DNS
- Panorama settings
- GlobalProtect
- VPN/IPsec
- certificates
- default/system-created objects
I would particularly appreciate the actual running-config.xml exported immediately after factory reset / initial setup.
I'm NOT looking for PAN-OS software, firmware images, licenses, or unofficial download sources.
I only need a sanitized configuration exported from a legitimate Palo Alto firewall.
Any PA-Series model is useful. PA-5220 running PAN-OS 11.x would be especially helpful.
Thanks!
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

