<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic push from panorama to PA firewalal failed because of &amp;quot; is already in use because of policy and NAT already in use) in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/416469#M175</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have panorama in 9.1.9 version and&amp;nbsp; PA-220 in same version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we imported configuration from pa to panorama, added just e pôlicy rule and pushed again the template and device group to same firewall.&amp;nbsp;&lt;/P&gt;&lt;P&gt;but then we get always pushh failed with errors saying NAT rules and policy rules are already in use !&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is that normal ? we have exactly the same rules on device group and on the firewall. , we tried to force value but still we get same eror :&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Last Push State Details&lt;BR /&gt;Details:&lt;BR /&gt;. Validation Error:&lt;BR /&gt;. service -&amp;gt; port-2083 'port-2083' is already in use&lt;BR /&gt;. service -&amp;gt; port-2083 'port-2083' is already in use&lt;BR /&gt;. service is invalid&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules -&amp;gt; allow all 'allow all' is already in use&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules -&amp;gt; allow all 'allow all' is already in use&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules is invalid&lt;BR /&gt;. rulebase -&amp;gt; security is invalid&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; MGMT-to-WAN 'MGMT-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; LAN-to-WAN 'LAN-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; MGMT-to-WAN 'MGMT-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; LAN-to-WAN 'LAN-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules is invalid&lt;BR /&gt;. rulebase -&amp;gt; nat is invalid&lt;BR /&gt;. rulebase is invalid&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;any help please&lt;/P&gt;</description>
    <pubDate>Thu, 01 Jul 2021 11:01:36 GMT</pubDate>
    <dc:creator>Elwess</dc:creator>
    <dc:date>2021-07-01T11:01:36Z</dc:date>
    <item>
      <title>push from panorama to PA firewalal failed because of " is already in use because of policy and NAT already in use)</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/416469#M175</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have panorama in 9.1.9 version and&amp;nbsp; PA-220 in same version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we imported configuration from pa to panorama, added just e pôlicy rule and pushed again the template and device group to same firewall.&amp;nbsp;&lt;/P&gt;&lt;P&gt;but then we get always pushh failed with errors saying NAT rules and policy rules are already in use !&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is that normal ? we have exactly the same rules on device group and on the firewall. , we tried to force value but still we get same eror :&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Last Push State Details&lt;BR /&gt;Details:&lt;BR /&gt;. Validation Error:&lt;BR /&gt;. service -&amp;gt; port-2083 'port-2083' is already in use&lt;BR /&gt;. service -&amp;gt; port-2083 'port-2083' is already in use&lt;BR /&gt;. service is invalid&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules -&amp;gt; allow all 'allow all' is already in use&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules -&amp;gt; allow all 'allow all' is already in use&lt;BR /&gt;. rulebase -&amp;gt; security -&amp;gt; rules is invalid&lt;BR /&gt;. rulebase -&amp;gt; security is invalid&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; MGMT-to-WAN 'MGMT-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; LAN-to-WAN 'LAN-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; MGMT-to-WAN 'MGMT-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules -&amp;gt; LAN-to-WAN 'LAN-to-WAN' is already in use&lt;BR /&gt;. rulebase -&amp;gt; nat -&amp;gt; rules is invalid&lt;BR /&gt;. rulebase -&amp;gt; nat is invalid&lt;BR /&gt;. rulebase is invalid&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;any help please&lt;/P&gt;</description>
      <pubDate>Thu, 01 Jul 2021 11:01:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/416469#M175</guid>
      <dc:creator>Elwess</dc:creator>
      <dc:date>2021-07-01T11:01:36Z</dc:date>
    </item>
    <item>
      <title>Re: push from panorama to PA firewalal failed because of " is already in use because of policy and NAT already in use)</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/416619#M176</link>
      <description>&lt;P&gt;The already in use can be an issue when you are trying to use Panorama to Manage a firewall and want to re-use the same names for objects..&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please see this article for more information about this.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A title="ADDRESS/ADDRESS GROUP OBJECTS MUST HAVE DIFFERENT NAMES" href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClhICAS" target="_blank" rel="noopener"&gt;ADDRESS/ADDRESS GROUP OBJECTS MUST HAVE DIFFERENT NAMES&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Jul 2021 19:07:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/416619#M176</guid>
      <dc:creator>jdelio</dc:creator>
      <dc:date>2021-07-01T19:07:00Z</dc:date>
    </item>
    <item>
      <title>Re: push from panorama to PA firewalal failed because of " is already in use because of policy and NAT already in use)</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/523764#M1264</link>
      <description>&lt;P&gt;In case anyone else runs in to this issue, check your template stack and ensure the device is still added.&amp;nbsp; I just ran into a similar issue as OP and in the end, the device was somehow removed from the template stack and had to be re-added. This may have occured when I "disable panorama policy and objects" or the "disable device and network templates".&amp;nbsp; Haven't seen this happen before.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This also applies to the error "&amp;nbsp;$var_SomethingHere' is not a valid reference".&amp;nbsp; Variables don't exist on the local firewall if the device isn't added to the template stack.&lt;/P&gt;</description>
      <pubDate>Sat, 10 Dec 2022 16:27:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/523764#M1264</guid>
      <dc:creator>Eric_4617</dc:creator>
      <dc:date>2022-12-10T16:27:37Z</dc:date>
    </item>
    <item>
      <title>Re: push from panorama to PA firewalal failed because of " is already in use because of policy and NAT already in use)</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/1234550#M2945</link>
      <description>&lt;P&gt;Thanks for this! I just ran into a version of this scenario and needed to add the template stack to the device group in order to be able to commit.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jul 2025 14:58:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/push-from-panorama-to-pa-firewalal-failed-because-of-quot-is/m-p/1234550#M2945</guid>
      <dc:creator>bgooch</dc:creator>
      <dc:date>2025-07-23T14:58:18Z</dc:date>
    </item>
  </channel>
</rss>

