Bootstrapping Flashcards
Why are Microsoft Windows and Apple MacOS unable to read the bootstrap USB flash drive?
because the drive is formatted using an ext4 file system; install third-party software or use a Linux system to read the USB drive
In what state a firewall has to be in order to be able to bootstrap from a USB flash drive?
firewall must be in a factory default state or must have all private data deleted
What is bootstrapping?
feature that enables firewalls to automatically configure themselves during the first boot using a specifically prepared storage volume
What are the possible storage volumes for firewalls for bootstrapping?
- USB for physical appliances
- storage accounts for VM-Series firewalls
Which exact directories need to be present on the storage from which firewalls is performing a bootstrap, even if the directory is empty?
- /config
- /license
- /software
- /content
Which optional direcotry can be included?
What does the /config directory include?
- init-cfg.txt
- bootstrap.xml
What is the importance of the init-cfg.txt file?
crucial for the basic configuration, including management interface settings, DNS, Panorama settings, etc.
What does the bootstrap.xml contain?
complete configuration for the firewall
Is bootstrap.xml file optional?
yes
How is the bootstrap process for Palo Alto Networks firewalls, including VM-Series firewalls initiated?
only on the first boot when the firewall is in a factory default state
How do you bootstrap firewall on a local hypervisor like VMware ESXi, KVM, or Hyper-V?
- create a disk (either a virtual hard disk or an ISO image) containing the bootstrap package
- attach to the virtual firewall instance before it is powered on for the first time
- firewall detects this attached disk during its initial boot sequence and applies the configurations contained within the bootstrap package
How do you bootstrap firewall in a cloud environment?
specify the location of the bootstrap package stored in cloud storage during the deployment of the VM-Series firewall
How much time does it take to a bootsrapped firewall to become available for a service?
7-9 minutes