There are many warnings related to the admin role when pushing the configuration from Panorama 6.0 to a managed Palo Alto Networks firewall running PAN-OS 5.0 (and above), as shown in the example below:
In Panorama 6.0, a few extra Web UI roles were added. When Panorama tries to push this configuration to a firewall running PAN-OS 5.0, the admin roles are discarded because the firewall does not know about the roles. Below, is an example of the admin roles:
The following screenshot is a Panorama 5.0 example of the admin roles:
As shown in the example comparisons above, there are a few WebGUI roles missing, such as, Tags and Custom