For various reasons, products will eventually reach their natural End-of-Life – including new and better technologies being made available, marketplace changes, or source parts and technologies being no longer available. This is part of any technology product’s lifecycle and Palo Alto Networks tries to make this process as seamless as possible for our customers and partners while providing visibility into what can be expected during this process.
End of Life Policy for Prisma Access Panorama Cloud Services Plugins
For Prisma Access Panorama Cloud Services Plugins, the following End-of-Life policy applies:
For major and minor releases, Prisma Access Panorama Cloud Services Plugins will be supported for at least 12 months from the date of release.
Some plugin versions may have extended support lifetimes as published in End-of-Life Summary Page.
Hardware Products
For hardware products, the following End-of-Life policy applies:
Palo Alto Networks will use commercially reasonable efforts to provide 6 months notice prior to a product's End-of-Sale, at which time the product will no longer be available for order.
Palo Alto Networks will provide technical assistance for a period of 5 years following the End-of-Sale date, provided a valid support contract is maintained continuously on the product.
Software embedded inside hardware products will continue to be supported according to the Software Products Policy (below).Operating system software will continue to be supported per the PAN-OS Version Support Policy until the hardware's own end-of-life, specifically for the 'last supported OS' as published on our Hardware End-of-Life Dates page. For details on the support terms (standard or extended) that apply, please refer to the PAN-OS and Panorama table on our End-of-Life Summary page for the respective operating system.
Hardware replacement or replacement parts will be available for 5 years following the End-of-Sale date, provided a valid support contract is maintained continuously on the product. At Palo Alto Networks’ discretion, hardware may be replaced with a similar or equivalent product.
A product must be covered by a support contract as of the End-of-Sale date to be eligible for support renewal. Support contracts may be renewed for the duration of the End-of-Life cycle, and cannot be allowed to lapse during this time and be reinstated later.
Software Products
For software products, the following End-of-Life policy applies:
Palo Alto Networks will use commercially reasonable efforts to provide 6 months notice prior to a software product End-of-Sale, at which time the software product will no longer be available for order.
Palo Alto Networks will provide technical assistance for a period of 3 years following the End-of-Sale date, provided a valid support contract is maintained continuously on the product.
A software product must be covered by a support contract as of the End-of-Sale date to be eligible for support renewal. Support contracts may be renewed for the duration of the End-of-Life cycle, and cannot be allowed to lapse during this time and be reinstated later.
PAN-OS Version Support Policy - PAN-OS 12.1 (August 28, 2025) and Later
Major feature releases will be supported for 48 months from the date of release.
Extended Support (Months 37–48): Includes TAC support and Content Updates (provided the customer maintains active subscriptions). Software fixes are limited to Priority 1 (P1) critical system stability issues where there is no workaround, and vulnerability fixes for Critical and High vulnerabilities (CVSS ≥ 7.0).
PAN-OS Version Support Policy - versions released after release date of PAN-OS 11.2 (May 2, 2024)
Major/Minor feature releases (see definition in “Key Terms" section below) will be supported for 36 months from the date of release. Standard support will be applicable during these periods and includes TAC (Technical Assistance Center) support and Content Updates, bug fixes, maintenance releases, workarounds, and fixes for vulnerabilities subject to the Palo Alto Networks Product Security Assurance and Vulnerability Disclosure Policy.
In some cases Palo Alto Networks may extend the support beyond the standard support window. During this period only 'Extended Support' will be offered as stated below:
TAC (Technical Assistance Center) support, provided the customer has an active support contract.
Content updates, provided the customer maintains active subscriptions.
Bug fixes for Priority 1 (P1) critical system stability issues where there is no workaround.
VM-Series Accelerated Feature Releases (XFR) will be supported for 12 months from the date of release.
PAN-OS Version Support Policy - versions released prior to release date of PAN-OS 11.2 (May 2, 2024)
Major feature releases will be supported for 24 months from the date of release. Minor feature releases (see definition in “Key Terms" section below) will be supported for 42 months from the date of release. Standard support will be applicable during these periods and includes TAC (Technical Assistance Center) support and Content Updates, bug fixes, maintenance releases, workarounds, and fixes for vulnerabilities subject to the Palo Alto Networks Product Security Assurance and Vulnerability Disclosure Policy.
In some cases Palo Alto Networks may extend the support beyond the standard support window. During this period only 'Extended Support' will be offered as stated below:
TAC (Technical Assistance Center) support, provided the customer has an active support contract.
Content updates, provided the customer maintains active subscriptions.
Bug fixes for Priority 1 (P1) critical system stability issues where there is no workaround.
VM-Series Accelerated Feature Releases (XFR) will be supported for 12 months from the date of release.
EoL Policy for Panorama Plugins
For Panorama plugins, the following End-of-Life policy applies:
For major and minor releases, Panorama plugins will be supported for at least 12 months from the date of release.
Some plugin versions may have extended support lifetimes as published in End-of-Life Summary page.
For Cortex XDR software products releases, the following End-of-Life policy applies:
Major feature releases will be supported for 9 months.
Critical environment releases will be supported for 24 months.
Support includes at Palo Alto Networks reasonable discretion technical support, minor feature releases, content updates, workarounds, and fixes for bugs.
A product must be covered by a support contract in order to receive support
*“Critical Environment Releases” means version releases for Software designed to be installed in sensitive and highly regulated environments. It contains minimal change over time to retain its stability. This release line will only include the most critical updates e.g. - only critical bug fixes and high-severity security issues.
For GlobalProtect App products releases, the following End-of-Life and End of Engineering policy applies:
For Major feature releases, Palo Alto Networks will field customer support queries until End-of-Life (EOL) date from their release date. However, bug fixes, Major and Minor Maintenance releases, software patches, and vulnerability fixes are limited as follows:
For mobile apps (Android, Chrome, iOS, Windows UWP): Only the most current version is supported because App stores do not allow distribution of multiple versions of an App. Only security fixes will be provided after the End-of-Engineering(EoE) date.
For macOS and Windows: Support is available until End-of-Life (EOL) from the initial release date of the Major feature release. Only security fixes will be provided after the End-of-Engineering(EoE) date until End-of-Life (EOL).
End-of-Engineering (EOE) for GlobalProtect: No more bug fixes or features beyond this date. Palo Alto Networks will still provide security fixes.
For the QRadar SaaS products acquired from IBM specified below, the following End-of-Sale and End-of-Life policy applies:
The following QRadar SaaS products will be supported through April 14, 2026 after which they will reach End-of-Life: IBM Security QRadar on Cloud; IBM Security QRadar Suite – Cloud-Native SIEM; IBM Security QRadar Suite – SOAR; the SOAR Portion of the Cloud Pak for Security as a Service (excluding Guardium and Identity Access Management portions); IBM Security SOAR on Cloud; IBM Security Randori Recon; and IBM Security QRadar Suite – Log Insights.
The following QRadar SaaS products will be supported through August 31, 2026 after which they will reach End-of-Life: IBM Security QRadar Suite – EDR; IBM Security QRadar Suite - XDR; IBM Security X-Force Threat Intelligence; IBM Security Randori Attack; and IBM Security QRadar Advisor with Watson.
These QRadar SaaS Products will no longer be available by the End-of-Life dates specified above. Palo Alto Networks will help eligible customers migrate from QRadar SaaS Products to Cortex XSIAM or other Cortex solutions with no-cost migration services to ensure continuous services for the remainder of their applicable QRadar SaaS Products’ subscription terms. Palo Alto Networks sales representatives or authorized reseller partners are available to further discuss and help with migration options.
For SaaS products (cloud services) other than the QRadar SaaS products specified above, the following End-of-Life policy applies:
Palo Alto Networks will use commercially reasonable efforts to provide 6 months notice prior to a cloud service’s End-of-Sale, at which time the service will no longer be available for order.
For customers who have valid subscriptions at the time of the End-of-Sale announcement: (1) Palo Alto Networks will continue to operate the cloud service through the end of each customer’s subscription term; and (2) Palo Alto Networks will provide technical assistance for a period of six months following the end of each customer’s subscription term to assist with customer’s migration from the cloud service.
For Prisma Cloud Compute Edition the following End-Of-Life policy applies:
Prisma Cloud Compute Edition has an 'n-2' support policy that means the current release ('n') and the previous release ('n-2') are supported.
Note that in some cases, resolution of a problem in the n-2 version may require upgrading to a current build. Prisma Cloud will make commercially reasonable efforts to work with customers that require porting fixes back to the n-2 version but sometimes architectural changes are significant enough between versions that this is practically impossible without making the n-2 version essentially the same as the n version.
Because the container ecosystem is constantly evolving, there are requirements from third-party vendors that may impact also supportability. For example, Prisma Cloud Compute Edition cannot effectively support third-party software that the vendor (or project) itself no longer supports, and this includes the host operating systems, orchestrators, and registries.
Key Terms:
End-of-Life Policy: The policy covering End-of-Sale announcement through End-of-Life for a product.
End-of-Life: The last day that a product will be supported by Palo Alto Networks. For SaaS products, the last day the cloud service would be shutdown.
End-of-Sale: The last day that a product will be available for order from Palo Alto Networks.
Major feature release: Where each release includes three numbers (x.y.z) : The “x” represents a major feature release, which usually includes a large number of new features and/or significant software architectural changes.
Minor feature release: The “y” in the x.y.z nomenclature above represents a minor feature release, which usually includes a small to medium number of new features and typically minimal software architecture changes.
Maintenance release: The “z” in the x.y.z nomenclature above represents a maintenance release, which only includes bug fixes.
For ION family hardware devices, the following End-of-Life policy applies:
Palo Alto Networks will use commercially reasonable efforts to provide 6 months’ notice prior to a product's End-of-Sale, at which time the product will no longer be available for order.
Palo Alto Networks will provide technical assistance for a period of 5 years following the End-of-Sale date, provided a valid support contract is maintained continuously on the product.
Software embedded inside hardware devices will continue to be supported according to the policy governing software end-of-life (below). Software support may include technical support, bug fixes, Maintenance releases, workarounds, and patches for critical bugs.
Hardware replacement or replacement parts will be available for 5 years following the End-of-Sale date, provided a valid support contract is maintained continuously on the product. At Palo Alto Networks’ discretion, hardware may be replaced with similar or equivalent product.
A product must be covered by a support contract as of the End-of-Sale date to be eligible for support renewal. Support contracts may be renewed for the duration of the End-of-Life cycle, and cannot be allowed to lapse during this time and be reinstated later.
For software on the ION family hardware or the virtual ION, the following End-of-Life policy applies:
Palo Alto Networks will use commercially reasonable efforts to provide 6 months notice prior to a software product End-of-Sale, at which time the software product will no longer be available for order.
Software releases will be supported for 24 months from the date of release.
Each release includes three numbers (x.y.z) : The “x” and “y” represents the version of the software release.
Maintenance releases: The “z” in the x.y.z nomenclature above represents a maintenance release, which only includes bug fixes.
Support may include technical support, bug fixes, Maintenance releases, workarounds, and patches for critical bugs.
A product must be covered by a support contract as of the End-of-Sale date to be eligible for support renewal. Support contracts may be renewed for the duration of the End-of-Life cycle, and cannot be allowed to lapse during this time and be reinstated later.
Automating security tasks has long been a priority for security leaders, driven by growing network complexity, a proliferation of human and machine identities, and a shortage of skilled defenders. This was highlighted in a recent IDC survey, where security automation was the number one European CISO investment priority for 2025. Automation in a SOC offers the prospect of greater cost efficiency, reduced manual tasks, improved threat detection and response, and ultimately better risk management. These are highly attractive benefits for organizations who are migrating to cloud or pursuing a cloud-first strategy, and CISOs in these organizations are attracted to the visibility and scalability offered by cloud-first SOCs. So how can UK Public Sector organizations improve the automation of security operations, and how will this change as SOCs are increasingly cloud-first? And, in this future environment, when is a human in the loop – or a machine – preferable or essential? Listen now, to experts from IDC and Palo Alto Networks who discussed the key challenges to SOC automation and offered recommendations for UK public sector security leaders.
AI-powered adversaries are evolving — fast. To keep up, SOCs need more than quick fixes. They need a complete transformation built on unified data, advanced AI and automation at speed. Join our SIEM Transformation Bootcamp to see that future in action: Connect data in minutes. See how easy it is for Cortex XSIAM® to ingest, normalize and stitch any source. Detect and triage automatically. 10,000+ detection rules and 2,600+ ML models reveal hidden threats fast. AI-driven SmartGrouping consolidates related alerts into a case, simplifying analysis. Respond in record time. Learn how prebuilt playbooks can resolve almost every case, speeding up incident resolution and cutting manual work by 75%. Run the labs yourself, grill our experts with your toughest SIEM questions and leave with a plan to modernize your SOC. Seats are limited: Save yours today and stay ahead of tomorrow’s threats.
The surge in advanced attackers has created a need for SecOps to understand, quickly respond to and hunt the most sophisticated threats inside your organization. Join this 3 hour hands-on investigation and threat hunting virtual bootcamp to boost your skills and learn how to use Cortex XDR to stop sophisticated attacks by: Creating custom rules to alert on suspicious behavior Accelerating threat hunting with enriched, contextualized data Quickly investigating the root cause & attack chain of endpoint alerts Applying machine learning & behavioral analytics to find the most elusive threats Walk away with a clear plan to continually improve the effectiveness and accuracy of investigations and threat hunting at your organization. This session is ideal for security analysts of all experience levels, including security operations/SOC staff, incident responders and threat hunters. Prerequisite: Participants must bring a laptop with the latest version of Google Chrome.
In security operations, every second changes the odds. When your adversaries move fast, you have to be faster, smarter and more decisive. The intense SOC Transformation Capture the Flag event is your opportunity to prove that you have what it takes to neutralize threats under pressure. Push your threat-hunting and incident response skills to the limit and compete against your peers for the top spot on the leaderboard. In this thrilling hands-on challenge, you’ll: Lead your security team to defend critical infrastructure from active attacks. Wield the power of AI and automation within Cortex XSIAM® to accelerate response. Sharpen your analytical instincts by solving complex challenges against the clock. Conquer the challenge. Claim your victory. Secure your spot now.
Join TechUK, Palo Alto Networks and Digital Health for an insightful discussion on the role of the supply chain in protecting the NHS. The NHS Cyber Security Charter is not ‘just another checklist’; it is a vital mandate to safeguard patients and systems following catastrophic attacks like WannaCry and Synnovis. Join our 50-minute panel discussion on the true financial and reputational impact of cyber risk and learn how as a supplier to the NHS, you can move beyond baseline compliance. We will touch on a Zero Trust approach and how to leverage platformisation. Discover how consolidation eliminates complexity and security gaps, reduces Total Cost of Ownership, and positions your organisation as a resilient, indispensable strategic partner to the NHS.
Prevent Attacks with Cortex XDR®. You’re invited! Join us on 22 October for a fast-paced 30-minute demo on the foundation of the AI-driven SOC. Cortex XDR delivers industry-leading endpoint protection with unmatched prevention, detection, and response capabilities, empowering security teams to outpace adversaries and transform SecOps. This recognition adds to the growing list of independent validation from the industry’s most trusted voices, including being recognized as a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection Platforms for the fourth consecutive year. Walk away seeing how Cortex XDR: Detect more attacks in real-time with AI Respond faster than the adversary to stop a breach Prevent endpoint threats with industry leading accuracy The next era of security operations is here. Don’t get left behind — sign up now to experience the power of Cortex XDR.