Paloalto Networks Palo Alto Networks Certified Security Engineer (PCNSE) PAN-OS 11.0 PCNSE Question # 39 Topic 4 Discussion

Paloalto Networks Palo Alto Networks Certified Security Engineer (PCNSE) PAN-OS 11.0 PCNSE Question # 39 Topic 4 Discussion

PCNSE Exam Topic 4 Question 39 Discussion:
Question #: 39
Topic #: 4

Panorama is being used to upgrade the PAN-OS version on a pair of firewalls in an active/passive high availability (HA) configuration. The Palo Alto Networks best practice upgrade steps have been completed in Panorama (Panorama upgraded, backups made, content updates, and disabling "Preemptive" pushed), and the firewalls are ready for upgrade. What is the next best step to minimize downtime and ensure a smooth transition?


A.

Upgrade both HA peers at the same time using Panorama’s "Group HA Peers" option to ensure version consistency


B.

Suspend the active firewall, upgrade it first, and reboot to verify it comes back online before upgrading the passive peer


C.

Perform the upgrade on the active firewall first while keeping the passive peer online to maintain failover capability


D.

Upgrade only the passive peer first, reboot it, restore HA functionality, and then upgrade the active peer


Get Premium PCNSE Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.