Palo Alto Firewall Training | Updating HA Firewalls

แชร์
ฝัง
  • เผยแพร่เมื่อ 14 ต.ค. 2024

ความคิดเห็น • 34

  • @NetworkDirection
    @NetworkDirection  4 ปีที่แล้ว +2

    Thanks for watching! More videos coming soon!

  • @deepunair3210
    @deepunair3210 2 ปีที่แล้ว +3

    Fantastic....simple and yet covers everything in detail

  • @roseamos7359
    @roseamos7359 ปีที่แล้ว

    very clear and concise. Thank you so much. I am planning to upgrade our PROD PAN-OS from 9.1 to 10.1.10-h2. It's my first time and I don't have the confidence. Your video has helped a lot.

  • @lexboegen
    @lexboegen 4 ปีที่แล้ว +7

    Good video. I used this same procedure recently to upgrade from 9.0.6 to 9.0.8 on an HA pair. I did one thing differently...after you disabled preemption, I then suspended the local firewall to force a failover. I wanted to ensure that worked fine before upgrading. If I had a problem, I would have opened a TAC case to fix it before proceeding. A bit cautious, but with 3,500 or so users on my network, cautious is good. I haven't yet upgraded to 9.1 because it's not a TAC recommended release. I am hoping they bless it soon, because there's features in there that I want.

  • @richu4512
    @richu4512 ปีที่แล้ว

    Thank you! I needed to watch this because the documentation wasn't clear on which of the nodes to disable preemption. I now know that you disable it on the active/primary node. This way when you end up updating the primary, it will auto-failback to the primary after you enable preemption again and commit due to the election setting being a lower value.
    This video still applies all the way up to 10.2.x

  • @abdimohamed1554
    @abdimohamed1554 3 ปีที่แล้ว +1

    Thank you, Man. Upgraded HA PA firewalls in production using this video. You rock :)

    • @NetworkDirection
      @NetworkDirection  3 ปีที่แล้ว +1

      Nice!
      I upgraded my HA PA firewalls the other day. about 8 hours later, PA released a new firmware...

  • @konos3951
    @konos3951 2 ปีที่แล้ว +1

    Hope you don't mind I'm using this as a refresher before I update mine! :) Thanks for doing it!

  • @fidalive
    @fidalive 2 ปีที่แล้ว

    excellent video and simply explained.

  • @mitpatel4268
    @mitpatel4268 4 ปีที่แล้ว +1

    Thank you for this wonderful video.
    We are about to upgrade Palo firewalls from 8.1.x to 9.1.1. Can you please advise on what should be the stepwise path of version upgrades? Do we need to go as below?
    9.0.0 then to 9.1.0 and then to 9.1.1?
    Or can we skip the 9.0.0?

  • @sosmimi8167
    @sosmimi8167 4 ปีที่แล้ว +1

    just perfect, awesome video all in one

  • @microa5219
    @microa5219 4 ปีที่แล้ว

    Great video as usual.. Expecting more of such from you.. thanks

    • @NetworkDirection
      @NetworkDirection  4 ปีที่แล้ว +1

      Security profiles coming tomorrow, and User ID after that

  • @amitb7611
    @amitb7611 ปีที่แล้ว

    According to Palo alto documentations both of the firewalls should have same PAN-OS versions, so when we upgrade and reboot the secondary it will have a different version than primary active.
    So my question is how does the both firewalls syncthe connection tablee?

  • @shredwerd009
    @shredwerd009 ปีที่แล้ว

    I have to look through your videos but what about in the event an update fails? this is my first time and i'm building the process, i am confident things will go well but i want to be able to plan. do we reflash an OS? or just by importing the configuration will it revert to the previously working version?

  • @amarjeetkumar8735
    @amarjeetkumar8735 2 ปีที่แล้ว

    yes , its informative and useful.

  • @monikararadhya5050
    @monikararadhya5050 ปีที่แล้ว

    Thanks

  • @albertmiranda9476
    @albertmiranda9476 ปีที่แล้ว

    Hello do we need to run the command Request high-availability state functional in both PA or just in active PA only? thank you

  • @jull61
    @jull61 3 ปีที่แล้ว

    Nice video.I am about to upgrade my PA 3220 from 9.0.9 to 10.0.5, can you advise on what should be the steps to follow.

    • @NetworkDirection
      @NetworkDirection  3 ปีที่แล้ว

      There are summary steps in the description. Does that cover what you need?

  • @nishikantshirke273
    @nishikantshirke273 3 ปีที่แล้ว +2

    👌👍

  • @jarosawabiszewski2594
    @jarosawabiszewski2594 2 ปีที่แล้ว

    Hi, one question. I would like to upgrade Palo Alto cluster. I'm a bit caution, so I would like to upgrade one node and few days later the second node. It's possible? In case on mismach version of both nodes synchronization, HA, changes commits can work properly? Or is recommended to upgrade both nodes in the same maintenance window? Thanks

  • @alessandropc1986
    @alessandropc1986 2 ปีที่แล้ว +1

    Hi, please I have a question.. Disable preemption must be in both firewalls? thks in advance

  • @amarjeetkumar8735
    @amarjeetkumar8735 2 ปีที่แล้ว

    Could you make video on how to proceed with upgrade incase of less memory

  • @warronfrench8163
    @warronfrench8163 ปีที่แล้ว

    How do you update a Palo Alto PA-5220 that is on an isolated (air-gapped) network?

  • @esmeraldag9455
    @esmeraldag9455 2 ปีที่แล้ว

    Hola, justamente me tocan actualizar unos equipos, gracias por la información me queda más claro como va el asunto : 3 !!