Pa-220 Firmware — [2021]
Upgrading PA-220 firmware is rarely a one-step process if the device is several versions behind. PAN-OS requires a sequential upgrade path. For example, to move from version 9.1 to 10.1, an administrator must first install the base image of 10.0, then move to the targeted 10.1 maintenance release. Skipping major versions can lead to configuration corruption or hardware failure. Additionally, it is vital to check the compatibility of the firmware with the version of Panorama being used for centralized management. Panorama must always run a version equal to or higher than the managed firewalls. Best Practices for Installation
Second, there is the issue of . Palo Alto Networks has formally scheduled the end of support for the PA-220. Once the support date expires, the firmware will no longer receive security patches or content updates. In the context of firewall technology, running an unsupported firmware version is akin to leaving the front door of a business unlocked; newly discovered zero-day vulnerabilities will remain unpatched, leaving the network exposed to exploitation. pa-220 firmware
Palo Alto Networks is a legacy next-generation firewall that reached its End-of-Sale (EOS) Upgrading PA-220 firmware is rarely a one-step process
After running request system software install , the PA-220 reboots but still shows the old version. No error is logged in system.log . Skipping major versions can lead to configuration corruption
Never upgrade a PA-220 directly from a very old version to the newest one. You must step through the recommended upgrade paths.
While it supports the latest features, the hardware overhead means you have to be selective about which logging and reporting features you enable to maintain a functional management experience.
From the CLI: