<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VM firewalls can not join VM panorama all hosted in AWS cloud in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1239354#M6365</link>
    <description>&lt;P&gt;Had to Re-deploy the panorama. It solved the issue. Not sure what was wrong with initial instance.&lt;/P&gt;</description>
    <pubDate>Fri, 03 Oct 2025 14:14:39 GMT</pubDate>
    <dc:creator>Jagdeep1</dc:creator>
    <dc:date>2025-10-03T14:14:39Z</dc:date>
    <item>
      <title>VM firewalls can not join VM panorama all hosted in AWS cloud</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1222457#M5637</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;
&lt;P&gt;We are having an issue connecting palo-alto VM firewalls in AWS to the panorama hosted in AWS as well.&lt;/P&gt;
&lt;P&gt;connectivity is successful between the firewall and panorama and we are using management port for this traffic.&lt;/P&gt;
&lt;P&gt;we ran below command&lt;/P&gt;
&lt;PRE&gt;show netstat all yes numeric-hosts yes numeric-ports yes | match IP&lt;/PRE&gt;
&lt;P&gt;and found the state established on 3978.&lt;/P&gt;
&lt;P&gt;when we read ms.log file, we see as below&lt;/P&gt;
&lt;PRE&gt;SC3: failed to get SNI
 -0700 Warning:&amp;nbsp; sc3_get_current_sc3(sc3_utils.c:182): SC3: failed to get CCN&lt;/PRE&gt;
&lt;P&gt;as per this seems like secure connection issue, but we performed sc3 reset procedure multiple times and also completely removed and re-added the firewall to panorama, but still not connecting.&lt;/P&gt;
&lt;P&gt;Below is the complete error or ms.log file message we are seeing&lt;/P&gt;
&lt;DIV id="tinyMceEditorJagdeep1_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;SPAN&gt;has any body faced similar issue before where firewall is connecting to panorama in aws after performing all the required steps ?&lt;/SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Here is ms/log file message" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/66290i89EDA10DC1DEB163/image-size/large?v=v2&amp;amp;px=999" role="button" title="palocomunitypanorama.PNG" alt="Here is ms/log file message" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;Here is ms/log file message&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Mar 2025 19:01:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1222457#M5637</guid>
      <dc:creator>Jagdeep1</dc:creator>
      <dc:date>2025-03-03T19:01:41Z</dc:date>
    </item>
    <item>
      <title>Re: VM firewalls can not join VM panorama all hosted in AWS cloud</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1225048#M5744</link>
      <description>&lt;P&gt;I'm working with a customer who is having the same issue. Migrating from an ESXi hosted Panorama instance to an AWS hosted Panorama instance.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Mar 2025 22:04:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1225048#M5744</guid>
      <dc:creator>DH-Ahead</dc:creator>
      <dc:date>2025-03-28T22:04:37Z</dc:date>
    </item>
    <item>
      <title>Re: VM firewalls can not join VM panorama all hosted in AWS cloud</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1225097#M5747</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/662967199"&gt;@Jagdeep1&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;- Could you confirm you followed this procedure: &lt;A href="https://docs.paloaltonetworks.com/panorama/10-1/panorama-admin/troubleshooting/recover-managed-device-connectivity-to-panorama" target="_self"&gt;recover-managed-device-connectivity-to-panorama&lt;/A&gt;&amp;nbsp;for recovery?&lt;/P&gt;
&lt;P&gt;- Could you provide screen shot of logs what happens after log line with "device_registered no"?&lt;/P&gt;
&lt;P&gt;- Could you confirm what PAN-OS is running on FW and Panorama?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Mar 2025 21:38:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1225097#M5747</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2025-03-30T21:38:44Z</dc:date>
    </item>
    <item>
      <title>Re: VM firewalls can not join VM panorama all hosted in AWS cloud</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1239348#M6364</link>
      <description>&lt;P&gt;Hello Everyone,&lt;BR /&gt;I am also facing similar problem where our VM firewall's are unable to join to on prem Panorama, it suddenly started after sudden reboot of these devices hosted on kvm, any resolution was found to your problem ?&lt;/P&gt;</description>
      <pubDate>Fri, 03 Oct 2025 11:00:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1239348#M6364</guid>
      <dc:creator>S.RK772712</dc:creator>
      <dc:date>2025-10-03T11:00:21Z</dc:date>
    </item>
    <item>
      <title>Re: VM firewalls can not join VM panorama all hosted in AWS cloud</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1239354#M6365</link>
      <description>&lt;P&gt;Had to Re-deploy the panorama. It solved the issue. Not sure what was wrong with initial instance.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Oct 2025 14:14:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/vm-firewalls-can-not-join-vm-panorama-all-hosted-in-aws-cloud/m-p/1239354#M6365</guid>
      <dc:creator>Jagdeep1</dc:creator>
      <dc:date>2025-10-03T14:14:39Z</dc:date>
    </item>
  </channel>
</rss>

