<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Add managed firewall to Panorama without import policy to Panorama in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/586114#M2324</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for your suggestion, we tried to import the policy to device group pre-rules and object in shared. Then we create a new device group and associate to the firewall, then export the config bundle again. But found the all local policy gone.&lt;BR /&gt;&lt;BR /&gt;Then we check the doc again and found below; both export, push and commit will remove all local policies and objects.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="alextsa_0-1715135208667.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/59574i283237E6EB11964B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="alextsa_0-1715135208667.png" alt="alextsa_0-1715135208667.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 08 May 2024 02:28:22 GMT</pubDate>
    <dc:creator>alextsa</dc:creator>
    <dc:date>2024-05-08T02:28:22Z</dc:date>
    <item>
      <title>Add managed firewall to Panorama without import policy to Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/585813#M2319</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There are pre-rules, local firewall rules, post-rules and default rules after I added a firewall to Panorama, but when we import the configuration to device group, seems import rules to pre or post rules is a must during the the import operation, then the original local firewall rules will become the pre or post rules after we push the configuration. So may I know any way we can just import the device configuration to template, and object to shared but leave the existing firewall policy in local? Or what is the best practice to achieve this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Alex&lt;/P&gt;</description>
      <pubDate>Sun, 05 May 2024 06:53:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/585813#M2319</guid>
      <dc:creator>alextsa</dc:creator>
      <dc:date>2024-05-05T06:53:55Z</dc:date>
    </item>
    <item>
      <title>Re: Add managed firewall to Panorama without import policy to Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/585851#M2320</link>
      <description>&lt;P&gt;While you import a new firewall into panorama you get the option to move all the objects into 'shared'&lt;/P&gt;
&lt;P&gt;After the import has been completed, you can simply delete the newly created device group (or remove all the rules from it) and then push the config bundle without the pre/post rules&lt;/P&gt;
&lt;P&gt;All your rules will remain local&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 08:39:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/585851#M2320</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2024-05-06T08:39:03Z</dc:date>
    </item>
    <item>
      <title>Re: Add managed firewall to Panorama without import policy to Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/586114#M2324</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for your suggestion, we tried to import the policy to device group pre-rules and object in shared. Then we create a new device group and associate to the firewall, then export the config bundle again. But found the all local policy gone.&lt;BR /&gt;&lt;BR /&gt;Then we check the doc again and found below; both export, push and commit will remove all local policies and objects.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="alextsa_0-1715135208667.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/59574i283237E6EB11964B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="alextsa_0-1715135208667.png" alt="alextsa_0-1715135208667.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 May 2024 02:28:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/add-managed-firewall-to-panorama-without-import-policy-to/m-p/586114#M2324</guid>
      <dc:creator>alextsa</dc:creator>
      <dc:date>2024-05-08T02:28:22Z</dc:date>
    </item>
  </channel>
</rss>

