What are the best practices for migration of a configuration to the Palo Alto Networks platform?

What are the best practices for migration of a configuration to the Palo Alto Networks platform?

48052
Created On 05/29/19 20:18 PM - Last Modified 06/01/23 06:33 AM


Question


What are the best practices for migration of a configuration to the Palo Alto Networks platform?

Answer


The best way to reduce the time and effort to migrate a configuration from one of the supported vendors to Palo Alto Networks is by using Expedition, the fourth evolution of the Palo Alto Networks Migration Tool.

By using the Migration Tool, everyone can convert a configuration from Checkpoint or Cisco or any other vendor to a PAN-OS and give you more time to improve the results. Migration Tool 3 added some functionalities to allow our customers to enforce security policies based on App-ID and User-ID as well.

With Expedition, we have gone one step further, not only because we want to continue helping to facilitate the transition of a security policy from others vendors to PAN-OS, but we want to ensure the outcome is the best as possible. This is why we added a Machine Learning module that can help you generate new security policies based on real log traffic and the introduction of the Best Practices Assessment Tool to check the configuration complies with the Best Practices recommended by our security experts.

With all these huge improvements we expect the next time you use Expedition the journey to the excellence will be easier.

Note: Expedition is supported by the community as best effort The Palo Alto Networks TAC does not provide support, so please post your questions in the community.

For more information about Expedition, go to the Expedition landing page on Live Community.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PM3FCAW&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail