- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
06-26-2024 12:06 PM
@BRasicot wrote:
I am currently running two 1420 HA pairs at 2 different sites.
Current SW version is 11.0.4 h1.
I see newer versions of code out there such as 11.0.5 and 11.1.3-h1.
Questions:
* Do I need an upgrade
* What code should I go to
* If 11.1.3-h1 is recommended, can I upgrade straight to it or do I need to first upgrade to earlier versions of 11.1.X
* Has the 11.1.x been out long enough to warrant going to it or should I just go to 11.0.5?
* Should I first upgrade the Panorama to what ever version is recommeded
* All recommendations are welcome
Thanks a lot - Brian
* Do I need an upgrade -- That really depends on your organization. Especially with newer Palo code I've found, "if it ain't broke, don't fix it." That said if you're not on the current "preferred" code in the train you're running then maybe upgrade to that?
* What code should I go to -- Kinda same as above. Typically best to run the preferred code on your existing train.
* If 11.1.3-h1 is recommended, can I upgrade straight to it or do I need to first upgrade to earlier versions of 11.1.X -- I'll take these two together
* Has the 11.1.x been out long enough to warrant going to it or should I just go to 11.0.5? -- I'll take these two together
-- Take a look at the code sheet below. 11.1 is relatively new. Unless there's a feature you have to have I'd stay on 11.0.X. To answer your first question if you wanted/needed to jump to the 11.1.X train you only need to download the "base" 11.1.0 code then you can download/upgrade to the 11.1.X revision you wanted to deploy.
* Should I first upgrade the Panorama to what ever version is recommeded -- Yes it's always recommended that your Panorama version be at the same code or higher as managed firewalls.