<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive) in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251758#M6821</link>
    <description>&lt;P&gt;show log-collector preference-list&lt;/P&gt;
&lt;P&gt;Logging Service Preference List&lt;BR /&gt;Forward to all: Yes&lt;BR /&gt;Serial Number: PANW_LOG_RECEPTOR_SRV FQDN: d352cdc8-a71d-4ea3-8298-e35d14d9e3ed.in2-lc-prod-eu.gpcloudservice.com&lt;/P&gt;</description>
    <pubDate>Tue, 07 Apr 2026 14:07:24 GMT</pubDate>
    <dc:creator>RoneyRajan123</dc:creator>
    <dc:date>2026-04-07T14:07:24Z</dc:date>
    <item>
      <title>Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251676#M6811</link>
      <description>&lt;P data-end="8" data-start="0"&gt;Hi Team,&lt;/P&gt;
&lt;P data-end="139" data-start="10"&gt;I am currently managing multiple firewalls through Panorama; however, one of the HA firewalls is not forwarding logs to Panorama.&lt;/P&gt;
&lt;P data-end="139" data-start="10"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="193" data-start="141"&gt;Please find the CLI output below for your reference.&lt;/P&gt;
&lt;P&gt;show logging-status&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Type Last Log Created Last Log Fwded Last Seq Num Fwded Last Seq Num Acked Total Logs Fwded&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;Log Collector :&lt;BR /&gt;Connection IP : lr-cms0&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;show panorama-status&lt;/P&gt;
&lt;P&gt;Panorama Server 1 : 172.30.0.6&lt;BR /&gt;Connected : yes&lt;BR /&gt;HA state : Unknown&lt;/P&gt;
&lt;P data-end="342" data-start="195"&gt;It appears that the firewall is unable to connect to the Panorama log collector. Could you please assist in investigating and resolving this issue?&lt;/P&gt;
&lt;P data-end="342" data-start="195"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="342" data-start="195"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2026 17:25:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251676#M6811</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-06T17:25:53Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251690#M6812</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/223437"&gt;@RoneyRajan123&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Id verify the Collector Group is properly configured on Panorama first and see that the firewall is assigned to it. The Collector Group config needs to be committed and pushed to Panorama and the Collector Group itself. Also, make sure you have the log forwarding profile configured and associated with all your security policies on the firewall for the logs to get sent over.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Next, Id rule out any connectivity issues.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Verify the log collector the firewall is trying to use:&lt;/SPAN&gt;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show log-collector preference-list&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now, how is your firewall trying to communicate with this log collector? Verify your service routes:&amp;nbsp;&lt;STRONG&gt;Device &amp;gt; Setup &amp;gt; Services &amp;gt; Service Route Configuration.&amp;nbsp;&lt;/STRONG&gt;The goal here is to confirm which interface the firewall is using to reach the Log Collector.&lt;/P&gt;
&lt;P data-end="1064" data-start="947"&gt;If service routes have not been customized, it will use the management interface by default. In that case, test with:&lt;/P&gt;
&lt;P data-end="1064" data-start="947"&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;ping host &amp;lt;collector ip&amp;gt;&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you have a custom service route and are using a different interface:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;ping source &amp;lt;interface_ip&amp;gt; host &amp;lt;log_collector_ip&amp;gt;&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can also confirm whether the firewall is actually building a tcp session to the Log Collector on port 3978. Run this in your CLI:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;show netstat numeric-host yes numeric-port yes all yes | match 3978&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you don't see an established session there, I'd focus on the path between the firewall and the Log Collector. Maybe you aren't getting there due to a layer 3 or layer 4 issue.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2026 21:17:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251690#M6812</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2026-04-06T21:17:01Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251691#M6813</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/223437"&gt;@RoneyRajan123&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;only to add to Jay's excellent answer from the output you provided, your Firewall is successfully registered in Panorama, however connection to log collector is inactive. If the output from: "show log-collector preference-list" returns correct list of log collectors, then I would restart Firewall's management server process: "debug software restart process management-server".&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards&lt;/P&gt;
&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2026 23:26:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251691#M6813</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2026-04-06T23:26:24Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251755#M6818</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/220841"&gt;@JayGolf&lt;/a&gt;&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192693"&gt;@PavelK&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-end="8" data-start="0"&gt;Hi Team,&lt;/P&gt;
&lt;P data-end="38" data-start="10"&gt;Thank you for your response.&lt;/P&gt;
&lt;P data-end="418" data-start="40"&gt;I would like to provide some additional details regarding the issue. In this environment, we manage multiple firewalls; however, the log forwarding issue is currently observed only on specific firewalls. Recently, these firewalls were onboarded to the Strata Logging Service (SLS) as part of the Cortex XDR implementation, and the issue has been consistently noticed since then.&lt;/P&gt;
&lt;P data-end="517" data-start="420"&gt;For your reference, please find the additional CLI outputs below to assist with further analysis.&lt;/P&gt;
&lt;P data-end="517" data-start="420"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;show logging-status&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Type Last Log Created Last Log Fwded Last Seq Num Fwded Last Seq Num Acked Total Logs Fwded&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;Log Collector :&lt;BR /&gt;Connection IP : lr-cms0&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Connection IP : lr-34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Log Collector :&lt;BR /&gt;Connection IP : lr-cms1&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;orward to all: Yes&lt;BR /&gt;Serial Number: PANW_LOG_RECEPTOR_SRV FQDN: d352cdc8-a71d-4ea3-8298-e35d14d9e3ed.in2-lc-prod-eu.gpcloudservice.com&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Type Last Log Created Last Log Fwded Last Seq Num Fwded Last Seq Num Acked Total Logs Fwded&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Conn ID : lr-34.90.253.226&lt;BR /&gt;Connection IP : 34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;DNS :&lt;BR /&gt;msg : Successfully resolved FQDN for connid (lr-34.90.253.226-def), IP (34.90.253.226)&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;Registration :&lt;BR /&gt;msg :&lt;BR /&gt;status :&lt;BR /&gt;timestamp :&lt;/P&gt;
&lt;P&gt;SSL :&lt;BR /&gt;msg : ssl channel established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;TCP :&lt;BR /&gt;msg : tcp connection established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;Conn Uptime : 0&lt;BR /&gt;Re-conn Count : 0&lt;/P&gt;
&lt;P&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Conn ID : lr-34.90.253.226-4&lt;BR /&gt;Connection IP : 34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;DNS :&lt;BR /&gt;msg : Successfully resolved FQDN for connid (lr-34.90.253.226-4-def), IP (34.90.253.226)&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;Registration :&lt;BR /&gt;msg :&lt;BR /&gt;status :&lt;BR /&gt;timestamp :&lt;/P&gt;
&lt;P&gt;SSL :&lt;BR /&gt;msg : SSL connect retry. sslerr=2&lt;BR /&gt;status : failure&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;TCP :&lt;BR /&gt;msg : tcp connection established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;Conn Uptime : 0&lt;BR /&gt;Re-conn Count : 0&lt;/P&gt;
&lt;P&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Conn ID : lr-34.90.253.226-3&lt;BR /&gt;Connection IP : 34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;DNS :&lt;BR /&gt;msg : Successfully resolved FQDN for connid (lr-34.90.253.111-3-def), IP (34.90.253.111)&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Registration :&lt;BR /&gt;msg :&lt;BR /&gt;status :&lt;BR /&gt;timestamp :&lt;/P&gt;
&lt;P&gt;SSL :&lt;BR /&gt;msg : SSL connect retry. sslerr=2&lt;BR /&gt;status : failure&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;TCP :&lt;BR /&gt;msg : tcp connection established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Conn Uptime : 0&lt;BR /&gt;Re-conn Count : 0&lt;/P&gt;
&lt;P&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Conn ID : lr-34.90.253.226-2&lt;BR /&gt;Connection IP : 34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;DNS :&lt;BR /&gt;msg : Successfully resolved FQDN for connid (lr-34.90.253.111-2-def), IP (35.90.253.111)&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Registration :&lt;BR /&gt;msg :&lt;BR /&gt;status :&lt;BR /&gt;timestamp :&lt;/P&gt;
&lt;P&gt;SSL :&lt;BR /&gt;msg : SSL connect retry. sslerr=2&lt;BR /&gt;status : failure&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;TCP :&lt;BR /&gt;msg : tcp connection established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Conn Uptime : 0&lt;BR /&gt;Re-conn Count : 0&lt;/P&gt;
&lt;P&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;/P&gt;
&lt;P&gt;Log Collector : PANW_LOG_RECEPTOR_SRV&lt;BR /&gt;Conn ID : lr-34.90.253.226-1&lt;BR /&gt;Connection IP : 34.90.253.226&lt;BR /&gt;Conn Source IP : lr - def&lt;BR /&gt;High speed mode : Disabled&lt;BR /&gt;Connection Status : lr - Inactive&lt;BR /&gt;DNS :&lt;BR /&gt;msg : Successfully resolved FQDN for connid (lr-34.90.253.226-1-def), IP (34.90.253.226)&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Registration :&lt;BR /&gt;msg :&lt;BR /&gt;status :&lt;BR /&gt;timestamp :&lt;/P&gt;
&lt;P&gt;SSL :&lt;BR /&gt;msg : ssl channel established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:24&lt;/P&gt;
&lt;P&gt;TCP :&lt;BR /&gt;msg : tcp connection established&lt;BR /&gt;status : success&lt;BR /&gt;timestamp : 2026/04/05 10:37:23&lt;/P&gt;
&lt;P&gt;Conn Uptime : 0&lt;BR /&gt;Re-conn Count : 0&lt;/P&gt;
&lt;P&gt;Rate : 0 logs/sec&lt;/P&gt;
&lt;P&gt;traffic Not Available Not Available 0 0 0&lt;BR /&gt;threat Not Available Not Available 0 0 0&lt;BR /&gt;hipmatch Not Available Not Available 0 0 0&lt;BR /&gt;gtp-tunnel Not Available Not Available 0 0 0&lt;BR /&gt;auth Not Available Not Available 0 0 0&lt;BR /&gt;iptag Not Available Not Available 0 0 0&lt;BR /&gt;userid Not Available Not Available 0 0 0&lt;BR /&gt;sctp Not Available Not Available 0 0 0&lt;BR /&gt;decryption Not Available Not Available 0 0 0&lt;BR /&gt;config Not Available Not Available 0 0 0&lt;BR /&gt;system Not Available Not Available 0 0 0&lt;BR /&gt;globalprotect Not Available Not Available 0 0 0&lt;BR /&gt;log info is not available&lt;BR /&gt;Enhanced Log Details:&lt;BR /&gt;log info is not available&lt;/P&gt;</description>
      <pubDate>Tue, 07 Apr 2026 13:58:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251755#M6818</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-07T13:58:53Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251756#M6819</link>
      <description>&lt;P&gt;Logging Service Preference List&lt;BR /&gt;Forward to all: Yes&lt;BR /&gt;Serial Number: PANW_LOG_RECEPTOR_SRV FQDN: d352cdc8-a71d-4ea3-8298-e35d14d9e3ed.in2-lc-prod-eu.gpcloudservice.com&lt;/P&gt;</description>
      <pubDate>Tue, 07 Apr 2026 14:01:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251756#M6819</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-07T14:01:46Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251757#M6820</link>
      <description>&lt;P&gt;It seems like in the log Panorama log collector is not connecting. Is there any way I can reconnect it?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I also restart in the management plane of the firewall&lt;/P&gt;</description>
      <pubDate>Tue, 07 Apr 2026 14:03:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251757#M6820</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-07T14:03:25Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251758#M6821</link>
      <description>&lt;P&gt;show log-collector preference-list&lt;/P&gt;
&lt;P&gt;Logging Service Preference List&lt;BR /&gt;Forward to all: Yes&lt;BR /&gt;Serial Number: PANW_LOG_RECEPTOR_SRV FQDN: d352cdc8-a71d-4ea3-8298-e35d14d9e3ed.in2-lc-prod-eu.gpcloudservice.com&lt;/P&gt;</description>
      <pubDate>Tue, 07 Apr 2026 14:07:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251758#M6821</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-07T14:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251820#M6823</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192693"&gt;@PavelK&lt;/a&gt;&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/220841"&gt;@JayGolf&lt;/a&gt;&amp;nbsp;can you please update.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Apr 2026 04:57:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251820#M6823</guid>
      <dc:creator>RoneyRajan123</dc:creator>
      <dc:date>2026-04-08T04:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: Firwall is uable to send logs to the Panorma (Log collector is showing inactive)</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251869#M6831</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/223437"&gt;@RoneyRajan123&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you run the following commands and share the output? We will want to verify the Strata Logging Service status and config as well as that your fw has a valid device cert (this is needed to establish a secure connection to SLS)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;request logging-service-forwarding status
request logging-service-forwarding customerinfo show
request logging-service-forwarding certificate info
show system state | match cfg.lcaas-region&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Apr 2026 12:35:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firwall-is-uable-to-send-logs-to-the-panorma-log-collector-is/m-p/1251869#M6831</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2026-04-08T12:35:00Z</dc:date>
    </item>
  </channel>
</rss>

