FWs - Migration from Checkpoint to Palo Alto
Good afternoon PANgurus, as always, thank you for your time, good vibes and collaboration.
Soon we have a mission to migrate some Firewall Checkpoints to Palo Alto.
Well I plan to use Expedition to perform the migration processes.
Now according to your experiences what or which aspects to consider for these processes, to have a double check, requirements, etc.
Thanks for your time, I remain attentive to all your comments, advices, contributions, details, considerations, etc.
Regards
I think both are on/from the firewall
...cont'd.: use the replace tool and "remove" to get the Palo default "any" (mind capital vs lowercase a)
Checkpoint to Palo is actually quite easy
Collect and import the CP config files, add a Palo plain config file, remove any bad and unused object
Doublecheck rules and NAT
done
I've had one case where CP poisoned the transition by having an object called "Any", if you encounter this, simply