In the event anyone is curious- I've upgraded two PA-200's from 6.0.3 up to 7.0 (in a remote site and my science project at home). I am leaving the larger production FW's out of the mix for now until a couple of minor updates come along just to make sure I upgraded to 6.1.0, then 6.1.4 and finally to 7.0.0 on both 200's without issues. One is configured L3 trust and untrust, the other is L2 and L3 trust and L3 untrust. So far: No issues bringing my "legacy" policies over. One of the two has a VPN tunnel back to corp and it came up and appears to be working reliably (that one also has dns proxy, DHCP and a few other things setup on it). Throughput improved by >10% - particularly download speed (benchmarked with speedtest.net). Yes, I know- there are lies, darn lies and benchmarks... Overall I like the new ACC look. Not much to do with intrazone on these devices; that will sure come in handy on the bigger PA's I run at corp and colo sites when I upgrade them.
... View more