<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Not able to set the PANG admin account password after enabling FIPS-CC mode in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1086291#M2323</link>
    <description>&lt;P&gt;Hi &lt;SPAN style="background: var(--ck-color-mention-background); color: var(--ck-color-mention-text);"&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1159140163"&gt;@gustheitguy&lt;/a&gt;&lt;/SPAN&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would recommend ssh via private key into the palo. Once ssh'd in , create a separate superuser and use that separate account for auth.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 16 Jan 2025 04:00:36 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2025-01-16T04:00:36Z</dc:date>
    <item>
      <title>Not able to set the PANG admin account password after enabling FIPS-CC mode</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1016822#M2318</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;When I set up my AWS PANG to FIPS-CC mode I am not able to set the admin account password. I tested the paloaltonetworks.panos.panos_admpwd module before enabling FIPS-CC and it works utilizing the priv key (RSA 4096). I successfully set up one firewall on FIPS-CC and set up the admin account password. My VM Mode Amazon AWS&lt;BR /&gt;PANG Software Version is 10.1.14-h8. I get the following prompts via my ansible runbook:&lt;/P&gt;
&lt;P&gt;Enter Palo Alto admin username: &lt;BR /&gt;Enter file path and name for key file: &lt;BR /&gt;Enter Palo Alto IP address: &lt;BR /&gt;Enter new password for admin account: &lt;/P&gt;
&lt;P&gt;It seems to work before enabling fips-cc mode.&lt;/P&gt;
&lt;P&gt;my ansible runbook pip file&lt;/P&gt;
&lt;P&gt;[[source]]&lt;BR /&gt;url = "&lt;A href="https://pypi.org/simple" target="_blank"&gt;https://pypi.org/simple&lt;/A&gt;"&lt;BR /&gt;verify_ssl = true&lt;BR /&gt;name = "pypi"&lt;/P&gt;
&lt;P&gt;[packages]&lt;BR /&gt;ansible-core = "*"&lt;BR /&gt;bcrypt = "==4.0.1"&lt;BR /&gt;boto3 = "==1.26.78"&lt;BR /&gt;botocore = "==1.29.78"&lt;BR /&gt;cffi = "==1.15.1"&lt;BR /&gt;cryptography = "==39.0.1"&lt;BR /&gt;jmespath = "==1.0.1"&lt;BR /&gt;pan-os-python = "==1.11.0"&lt;BR /&gt;pan-python = "==0.17.0"&lt;BR /&gt;paramiko = "==2.12.0"&lt;BR /&gt;pycparser = "==2.21"&lt;BR /&gt;pynacl = "==1.5.0"&lt;BR /&gt;python-dateutil = "==2.8.2"&lt;BR /&gt;s3transfer = "==0.6.0"&lt;BR /&gt;six = "==1.16.0"&lt;BR /&gt;urllib3 = "==1.26.14"&lt;BR /&gt;xmltodict = "==0.13.0"&lt;/P&gt;
&lt;P&gt;[dev-packages]&lt;BR /&gt;ansible = "*"&lt;BR /&gt;ansible-lint = "*"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any ideas on why this might not be working?&lt;/P&gt;</description>
      <pubDate>Sun, 12 Jan 2025 06:55:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1016822#M2318</guid>
      <dc:creator>gustheitguy</dc:creator>
      <dc:date>2025-01-12T06:55:55Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to set the PANG admin account password after enabling FIPS-CC mode</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1017797#M2319</link>
      <description>&lt;P&gt;Or maybe there is a FIPS Admin iD/password?&lt;/P&gt;
&lt;P&gt;My steps are the following,&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN class="col-s-10 col-xxs-12 linkifyWrapper--3jj-MXH70a"&gt;Build PANG PAYG firewall-&amp;gt;set complex admin password-&amp;gt;access web management with complex password-&amp;gt;set up "debug system maintenace mode"-&amp;gt;enable fips-cc via the AWS console -&amp;gt; reboot firewall-&amp;gt; attempt to log via web management with the admin account password-&amp;gt; fail&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 12 Jan 2025 08:25:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1017797#M2319</guid>
      <dc:creator>gustheitguy</dc:creator>
      <dc:date>2025-01-12T08:25:23Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to set the PANG admin account password after enabling FIPS-CC mode</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1086291#M2323</link>
      <description>&lt;P&gt;Hi &lt;SPAN style="background: var(--ck-color-mention-background); color: var(--ck-color-mention-text);"&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1159140163"&gt;@gustheitguy&lt;/a&gt;&lt;/SPAN&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would recommend ssh via private key into the palo. Once ssh'd in , create a separate superuser and use that separate account for auth.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jan 2025 04:00:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/not-able-to-set-the-pang-admin-account-password-after-enabling/m-p/1086291#M2323</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2025-01-16T04:00:36Z</dc:date>
    </item>
  </channel>
</rss>

