End-of-Life (EoL)

Create a new Bootstrap File from Scratch

Launch a new VM-Series firewall on AWS using PAN-OS 8.0 without using the bootstrap files, add a NAT policy rule to ensure that the VM-Series firewall handles traffic properly, and export the configuration to create a new bootstrap.xml file for the VM-Series Auto Scaling template.
  1. Deploy the VM-Series Firewall on AWS (no bootstrapping required) and use the public IP address to SSH into the Command Line Interface (CLI) of the VM-Series firewall. You will need to configure a new administrative password for the firewall.
  2. Log in to the firewall web interface.
  3. (
    Optional
    ) Configure the firewall. You can configure the dataplane interfaces, zones and policy rules.
    Commit
    the changes on the firewall.
  4. Export the configuration file and name it as
    bootstrap.xml
    . (
    Device
    Setup
    Operation
    Export Named Configuration Snapshot
    ).
  5. Download the bootstrap.xml file from the GitHub repository, open it with a text editing tool, and copy lines 406 to 435 and 445 to 454. These lines define the NAT policy rule and the address object required for the VM-Series Auto Scaling template. If you want to copy and paste the NAT policy rule and address objects, see NAT Policy Rule and Address Objects in the Auto Scaling Template.
    cft_bootstrap_nat.PNG
  6. Use a text editing tool to open the configuration file you exported earlier.
    1. Search for
      </security>
      and paste the lines 406 to 435 after
      </security>
      .
    2. Search for
      </import>
      and paste the lines 445 to 454 after
      </import>
      .
  7. Delete the management interface configuration.
    1. Search for
      </service>
      and delete the ip-address, netmask and default gateway that follow.
    2. Search for
      </type>
      and delete the ip-address, netmask, default gateway, and public-key that follow.
      cft-bootstrap-mgmt-ip.png
  8. Save the file. You can now proceed with Launch the VM-Series Auto Scaling Template for AWS.

Recommended For You