Our company went through a ton of changes and I found out that I'm responsible for 4 sites with a PA-220 device at each location. I'm not familiar with this hardware or the upgrade processes. I've read what has been posted here and it is very helpful but I would like to ask a few clarifying questions if I could.
Our 4 site have PA-220 devices on Software Version 8.1.9. Reading over everything including the Palo alto upgrade information here are my questions.
1. With all 4 locations in separate areas of town, I assume I complete onsite upgrade at a time, correct?
2. With the firewalls at 8.1.9, if I understand the process correctly I can go straight to 8.1.24?
3. Above
* Step 3 is listed Download PAN-OS 9.0.0 to firewall, but it does not say install it.
* At step 4 you have Download PAN-OS 9.0.13, install it and reboot firewall.
* My question here is, you download the 9.0.0 but do not need to install it, you automatically download the next highest 9.0.x and install that one?
* I see now that 9.0.16-h3 is the highest in the 9.0.x versions. I take it that's what I would install, correct?
4. Reading over your steps above after that I would then go to 9.1.0, then 9.1.15 and so on, correct?
The steps above appear that you only download the next new version 9.0.x, 9.1.x, 10.0.x, etc but you do not install those, you only install when you hit the highest version in those ranges.
One last question. I would assume that I do want to go into each firewall and go into Devices > Setup > Operations and I want to do the following: Save named configuration snapshot & Export named configuration snapshot ?
Thanks in advance!
... View more