on 05-23-2018 11:42 AM - edited on 10-07-2019 09:02 AM by Retired Member
Expedition is the fourth evolution of the Palo Alto Networks Migration Tool. The main purpose of this tool was help reducing the time and efforts to migrate a configuration from one of the supported vendors to Palo Alto Networks.
By using the Migration Tool, everyone can convert a configuration from Checkpoint or Cisco or any other vendor to a PAN-OS and give you more time to improve the results. Migration Tool 3 added some functionalities to allow our customers to enforce security policies based on App-ID and User-ID as well.
With Expedition, we have gone one step further, not only because we want to continue helping to facilitate the transition of a security policy from others vendors to PAN-OS, but we want to ensure the outcome is the best as possible. This is why we added a Machine Learning module that can help you generate new security policies based on real log traffic and the introduction of the Best Practices Assessment Tool to check the configuration complies with the Best Practices recommended by our security experts.
With all these huge improvements we expect the next time you use Expedition the journey to the excellence will be easier.
NOTE: Expedition is supported by the community as best effort
The Palo Alto Networks TAC does not provide support, so please post your questions in the community.
Can we convert from PIX to 8.0?
Can the tool be used for CiscoFirePOwer? or just ASA?
Has anyone been able to get this working with Virtualbox without first using VMWare Workstation or ESXi? I know the "VBoxManage clondhd" command lets you convert VMDK to a VDI file but I'm not sure if that'll work with an export with multiple vmdk files.
Can Expedition help migrate rules from your Palo Alto firewalls to Panorama?
Panorama can already adopt the configuration that a FW has. There is not need to involve Expedition in this process
Wasn't sure if it was posted previously....has anyone successfully installed on RHEL or Ubuntu 18.04 LTS
Can we migrate from Barracuda Next Gen to Palo alto?
Any one please share me guide for the migration tool?
Hi @palanisamy Barracuda is not supported at this point. Please see below the supported vendors matrix :
I reviewed this link below in which it discusses installing Expedition on Ubuntu 16.04 LTS. Is Ubuntu required to run Expedition now or can it be installed as a ova on a Win hypervisor?
Thanks in advance.
Yes, Ubuntu 16.04 is required , please review the installation video via the below link:
Hi @Kwrite17 Sonicwall is not supported at this point. Please see below the supported vendors matrix :
Please share the download link. Thanks in advance
@lychiang Can Expedition be used to merge or replace configuration from one Palo to another?
Merging security rules and network objects between two PA-850s, for example
@john.mayer yes, you can use expedition to merge two PA configuration, but you will probably end up with a lot of duplications on all objects, and you will need to clean up before you export the config.