Reset the Firewall to Factory Default Settings
Focus
Focus
Next-Generation Firewall

Reset the Firewall to Factory Default Settings

Table of Contents

Reset the Firewall to Factory Default Settings

Reset your Palo Alto Networks firewall to factory default settings, removing all configuration and restoring original system state.
Where Can I Use This?What Do I Need?
NGFW (Managed by PAN-OS or Panorama)
  • No prerequisites needed
Resetting the firewall to factory defaults will result in the loss of all configuration settings and logs.
For hardware NGFWs running PAN-OS 12.2.2 and PAN-OS 12.1.11 or later, you can also perform a complete wipe using a bootable USB drive without requiring TAC assistance. The USB-based method is recommended when the device may be compromised and you want to ensure a cryptographically verified recovery. See Perform a Self-Service Enhanced Factory Reset
  1. Set up a console connection to the firewall.
    1. Connect a serial cable from your computer to the Console port and connect to the firewall using terminal emulation software (9600-8-N-1).
      If your computer does not have a 9-pin serial port, use a USB-to-serial port connector.
    2. Enter your login credentials.
    3. Enter the following CLI command:
      debug system maintenance-mode
      The firewall will reboot in the maintenance mode.
  2. Reset the system to factory default settings.
    1. When the firewall reboots, press Enter to continue to the maintenance mode menu.
    2. Select Factory Reset and press Enter.
    3. Select Factory Reset and press Enter again.
      The firewall will reboot without any configuration settings. The default username and password to log in to the firewall is admin/admin.
      To perform initial configuration on the firewall and to set up network connectivity, see Integrate NGFWs into you management network.