Palo Alto Firewall Training | Updating HA Firewalls

Поділитися
Вставка
  • Опубліковано 15 гру 2024

КОМЕНТАРІ • 34

  • @NetworkDirection
    @NetworkDirection  4 роки тому +2

    Thanks for watching! More videos coming soon!

  • @deepunair3210
    @deepunair3210 2 роки тому +3

    Fantastic....simple and yet covers everything in detail

  • @roseamos7359
    @roseamos7359 Рік тому

    very clear and concise. Thank you so much. I am planning to upgrade our PROD PAN-OS from 9.1 to 10.1.10-h2. It's my first time and I don't have the confidence. Your video has helped a lot.

  • @lexboegen
    @lexboegen 4 роки тому +7

    Good video. I used this same procedure recently to upgrade from 9.0.6 to 9.0.8 on an HA pair. I did one thing differently...after you disabled preemption, I then suspended the local firewall to force a failover. I wanted to ensure that worked fine before upgrading. If I had a problem, I would have opened a TAC case to fix it before proceeding. A bit cautious, but with 3,500 or so users on my network, cautious is good. I haven't yet upgraded to 9.1 because it's not a TAC recommended release. I am hoping they bless it soon, because there's features in there that I want.

  • @richu4512
    @richu4512 Рік тому

    Thank you! I needed to watch this because the documentation wasn't clear on which of the nodes to disable preemption. I now know that you disable it on the active/primary node. This way when you end up updating the primary, it will auto-failback to the primary after you enable preemption again and commit due to the election setting being a lower value.
    This video still applies all the way up to 10.2.x

  • @abdimohamed1554
    @abdimohamed1554 3 роки тому +1

    Thank you, Man. Upgraded HA PA firewalls in production using this video. You rock :)

    • @NetworkDirection
      @NetworkDirection  3 роки тому +1

      Nice!
      I upgraded my HA PA firewalls the other day. about 8 hours later, PA released a new firmware...

  • @konos3951
    @konos3951 2 роки тому +1

    Hope you don't mind I'm using this as a refresher before I update mine! :) Thanks for doing it!

  • @fidalive
    @fidalive 2 роки тому

    excellent video and simply explained.

  • @sosmimi8167
    @sosmimi8167 4 роки тому +1

    just perfect, awesome video all in one

  • @amitb7611
    @amitb7611 2 роки тому

    According to Palo alto documentations both of the firewalls should have same PAN-OS versions, so when we upgrade and reboot the secondary it will have a different version than primary active.
    So my question is how does the both firewalls syncthe connection tablee?

  • @warronfrench8163
    @warronfrench8163 2 роки тому

    How do you update a Palo Alto PA-5220 that is on an isolated (air-gapped) network?

  • @mitpatel4268
    @mitpatel4268 4 роки тому +1

    Thank you for this wonderful video.
    We are about to upgrade Palo firewalls from 8.1.x to 9.1.1. Can you please advise on what should be the stepwise path of version upgrades? Do we need to go as below?
    9.0.0 then to 9.1.0 and then to 9.1.1?
    Or can we skip the 9.0.0?

  • @microa5219
    @microa5219 4 роки тому

    Great video as usual.. Expecting more of such from you.. thanks

    • @NetworkDirection
      @NetworkDirection  4 роки тому +1

      Security profiles coming tomorrow, and User ID after that

  • @amarjeetkumar8735
    @amarjeetkumar8735 2 роки тому

    Could you make video on how to proceed with upgrade incase of less memory

  • @albertmiranda9476
    @albertmiranda9476 Рік тому

    Hello do we need to run the command Request high-availability state functional in both PA or just in active PA only? thank you

  • @shredwerd009
    @shredwerd009 Рік тому

    I have to look through your videos but what about in the event an update fails? this is my first time and i'm building the process, i am confident things will go well but i want to be able to plan. do we reflash an OS? or just by importing the configuration will it revert to the previously working version?

  • @amarjeetkumar8735
    @amarjeetkumar8735 2 роки тому

    yes , its informative and useful.

  • @alessandropc1986
    @alessandropc1986 2 роки тому +1

    Hi, please I have a question.. Disable preemption must be in both firewalls? thks in advance

  • @jarosawabiszewski2594
    @jarosawabiszewski2594 2 роки тому

    Hi, one question. I would like to upgrade Palo Alto cluster. I'm a bit caution, so I would like to upgrade one node and few days later the second node. It's possible? In case on mismach version of both nodes synchronization, HA, changes commits can work properly? Or is recommended to upgrade both nodes in the same maintenance window? Thanks

  • @jull61
    @jull61 3 роки тому

    Nice video.I am about to upgrade my PA 3220 from 9.0.9 to 10.0.5, can you advise on what should be the steps to follow.

    • @NetworkDirection
      @NetworkDirection  3 роки тому

      There are summary steps in the description. Does that cover what you need?

  • @monikararadhya5050
    @monikararadhya5050 Рік тому

    Thanks

  • @nishikantshirke273
    @nishikantshirke273 3 роки тому +2

    👌👍

  • @esmeraldag9455
    @esmeraldag9455 2 роки тому

    Hola, justamente me tocan actualizar unos equipos, gracias por la información me queda más claro como va el asunto : 3 !!