<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Autoscaling in AWS version 3 (Gateway load balancer integration) - Firewalls never register in Panorama in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/autoscaling-in-aws-version-3-gateway-load-balancer-integration/m-p/416871#M1246</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is a really helpful group and I hope you can help with this challenge.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. We deployed the ASG using Template 3.0 - all successful.&lt;/P&gt;&lt;P&gt;2. Firewalls bootstrapped successfully.&lt;/P&gt;&lt;P&gt;3. The lambda had a problem enabling the VM-Series element for cloudwatch (stated error 13 in use but) managed to make the change manually&lt;/P&gt;&lt;P&gt;4. Everything else error free&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are coming out of the firewall VPC and hitting the Panorama box in another VPC on it's external address. This never seems to complete the registration process and panorama status is disconnected.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Things I've tried:&lt;/P&gt;&lt;P&gt;1. Checked the ports&lt;/P&gt;&lt;P&gt;2. Validated the bootstrap auth code (works fine and bootstrap is clear)&lt;/P&gt;&lt;P&gt;3. Lowered the MTU on interface 1/1 to 1400&lt;/P&gt;&lt;P&gt;4. Manually registered a firewall in Panorama with the serial number and generated a manual auth code.&lt;/P&gt;&lt;P&gt;5. Used that auth code on one of the firewalls to connect to Panorama. The auth code is accepted but still states disconnected on the firewall and in Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's really tough to get any detailed diagnosis for the error. Did I miss something?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are running version 10.1.0 on the firewalls and in Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would really appreciate a steer if anyone has faced this issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 02 Jul 2021 15:52:57 GMT</pubDate>
    <dc:creator>TonyCleveleys</dc:creator>
    <dc:date>2021-07-02T15:52:57Z</dc:date>
    <item>
      <title>Autoscaling in AWS version 3 (Gateway load balancer integration) - Firewalls never register in Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/autoscaling-in-aws-version-3-gateway-load-balancer-integration/m-p/416871#M1246</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is a really helpful group and I hope you can help with this challenge.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. We deployed the ASG using Template 3.0 - all successful.&lt;/P&gt;&lt;P&gt;2. Firewalls bootstrapped successfully.&lt;/P&gt;&lt;P&gt;3. The lambda had a problem enabling the VM-Series element for cloudwatch (stated error 13 in use but) managed to make the change manually&lt;/P&gt;&lt;P&gt;4. Everything else error free&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are coming out of the firewall VPC and hitting the Panorama box in another VPC on it's external address. This never seems to complete the registration process and panorama status is disconnected.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Things I've tried:&lt;/P&gt;&lt;P&gt;1. Checked the ports&lt;/P&gt;&lt;P&gt;2. Validated the bootstrap auth code (works fine and bootstrap is clear)&lt;/P&gt;&lt;P&gt;3. Lowered the MTU on interface 1/1 to 1400&lt;/P&gt;&lt;P&gt;4. Manually registered a firewall in Panorama with the serial number and generated a manual auth code.&lt;/P&gt;&lt;P&gt;5. Used that auth code on one of the firewalls to connect to Panorama. The auth code is accepted but still states disconnected on the firewall and in Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's really tough to get any detailed diagnosis for the error. Did I miss something?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are running version 10.1.0 on the firewalls and in Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would really appreciate a steer if anyone has faced this issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jul 2021 15:52:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/autoscaling-in-aws-version-3-gateway-load-balancer-integration/m-p/416871#M1246</guid>
      <dc:creator>TonyCleveleys</dc:creator>
      <dc:date>2021-07-02T15:52:57Z</dc:date>
    </item>
    <item>
      <title>Re: Autoscaling in AWS version 3 (Gateway load balancer integration) - Firewalls never register in Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/autoscaling-in-aws-version-3-gateway-load-balancer-integration/m-p/417852#M1250</link>
      <description>&lt;P&gt;I fixed this. Just incase it's useful for anyone else the guide is unclear and it's important to name your template with a different name than the template name in the init-cfg.txt. The lambda creates a template stack and it's important this name is unique. Once I changed the name the firewalls registered.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jul 2021 16:45:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/autoscaling-in-aws-version-3-gateway-load-balancer-integration/m-p/417852#M1250</guid>
      <dc:creator>TonyCleveleys</dc:creator>
      <dc:date>2021-07-08T16:45:07Z</dc:date>
    </item>
  </channel>
</rss>

