| Where Can I Use This? | What Do I Need? |
|
|
- VM-Series 10.x or above
- Panorama running PAN-OS 10.1.x or above versions
- Customer Support Portal (CSP) account with one of the
following user roles:
- Superuser, Standard User, Limited User, Threat
Researcher, AutoFocus Trial Role, Group superuser,
Group Standard User, Group Limited User, Group
Threat Researcher, Authorized Support Center (ASC)
User, and ASC Full Service User.
- Superuser access to the VM-Series
firewall
|
When you no longer need a BYOL instance of
the VM-Series firewall, you can free up all active licenses (subscription
licenses, model-based capacity licenses, and support entitlements)
from the web interface, the CLI, or the
XML API on
the firewall or Panorama. The licenses are credited back to your
account and you can use the same authorization codes on a different
instance of the VM-Series firewall.
Deactivating a VM removes
all the licenses/entitlements and places the VM-Series firewall
in an unlicensed state; the firewall will not have a serial number
and can support only a minimal number of sessions. Because the configuration
on the firewall is left intact, you can re-apply a set of licenses
and restore complete functionality on the firewall, if needed.
Make
sure to deactivate licenses before you delete the VM-Series
firewall. If you delete the firewall before deactivating the licenses,
you have two options:
Managed by Panorama—Deactivate
the license from Panorama.