<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Create Securit policy with API in Automation/API Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126779#M1290</link>
    <description>&lt;P&gt;Okay so below is what I've been attempting to use for the creation of policies automatically though the API; however when I run it I simply get a Success output and the rule never actually completes. Can anybody tell me where this is missformated?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/api/?type=config&amp;amp;action=get&amp;amp;xpath=/config/devices/entry[@name='localhost.localdomain']/vsys/entry[@name='vsys1']/rulebase/security/rules/[@name='$NewRule']&amp;amp;element=&amp;lt;source&amp;gt;&amp;lt;member&amp;gt;$Source&amp;lt;/member&amp;gt;&amp;lt;/source&amp;gt;&amp;lt;destination&amp;gt;&amp;lt;member&amp;gt;$Destination&amp;lt;/member&amp;gt;&amp;lt;/destination&amp;gt;&amp;lt;service&amp;gt;&amp;lt;member&amp;gt;$Service&amp;lt;/member&amp;gt;&amp;lt;/service&amp;gt;&amp;lt;application&amp;gt;&amp;lt;member&amp;gt;$Application&amp;lt;/member&amp;gt;&amp;lt;/application&amp;gt;&amp;lt;action&amp;gt;$Action&amp;lt;/action&amp;gt;&amp;lt;source-user&amp;gt;&amp;lt;member&amp;gt;$srcuser&amp;lt;/member&amp;gt;&amp;lt;/source-user&amp;gt;&amp;lt;option&amp;gt;&amp;lt;disable-server-response-inspection&amp;gt;no&amp;lt;/disabled-server-response-inspection&amp;gt;&amp;lt;/option&amp;gt;&amp;lt;negate-source&amp;gt;$negsource&amp;lt;/negate-source&amp;gt;&amp;lt;negate-destination&amp;gt;$negdest&amp;lt;/negate-destination&amp;gt;&amp;lt;disabled&amp;gt;$disabled&amp;lt;/disabled&amp;gt;&amp;lt;log-start&amp;gt;$logstart&amp;lt;/log-start&amp;gt;&amp;lt;log-end&amp;gt;$logend&amp;lt;/log-end&amp;gt;&amp;lt;description&amp;gt;$description&amp;lt;/description&amp;gt;&amp;lt;from&amp;gt;&amp;lt;member&amp;gt;$srczone&amp;lt;/member&amp;gt;&amp;lt;/from&amp;gt;&amp;lt;to&amp;gt;&amp;lt;member&amp;gt;$dstzone&amp;lt;/member&amp;gt;&amp;lt;/to&amp;gt;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Nov 2016 16:01:20 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2016-11-16T16:01:20Z</dc:date>
    <item>
      <title>Create Securit policy with API</title>
      <link>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126779#M1290</link>
      <description>&lt;P&gt;Okay so below is what I've been attempting to use for the creation of policies automatically though the API; however when I run it I simply get a Success output and the rule never actually completes. Can anybody tell me where this is missformated?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/api/?type=config&amp;amp;action=get&amp;amp;xpath=/config/devices/entry[@name='localhost.localdomain']/vsys/entry[@name='vsys1']/rulebase/security/rules/[@name='$NewRule']&amp;amp;element=&amp;lt;source&amp;gt;&amp;lt;member&amp;gt;$Source&amp;lt;/member&amp;gt;&amp;lt;/source&amp;gt;&amp;lt;destination&amp;gt;&amp;lt;member&amp;gt;$Destination&amp;lt;/member&amp;gt;&amp;lt;/destination&amp;gt;&amp;lt;service&amp;gt;&amp;lt;member&amp;gt;$Service&amp;lt;/member&amp;gt;&amp;lt;/service&amp;gt;&amp;lt;application&amp;gt;&amp;lt;member&amp;gt;$Application&amp;lt;/member&amp;gt;&amp;lt;/application&amp;gt;&amp;lt;action&amp;gt;$Action&amp;lt;/action&amp;gt;&amp;lt;source-user&amp;gt;&amp;lt;member&amp;gt;$srcuser&amp;lt;/member&amp;gt;&amp;lt;/source-user&amp;gt;&amp;lt;option&amp;gt;&amp;lt;disable-server-response-inspection&amp;gt;no&amp;lt;/disabled-server-response-inspection&amp;gt;&amp;lt;/option&amp;gt;&amp;lt;negate-source&amp;gt;$negsource&amp;lt;/negate-source&amp;gt;&amp;lt;negate-destination&amp;gt;$negdest&amp;lt;/negate-destination&amp;gt;&amp;lt;disabled&amp;gt;$disabled&amp;lt;/disabled&amp;gt;&amp;lt;log-start&amp;gt;$logstart&amp;lt;/log-start&amp;gt;&amp;lt;log-end&amp;gt;$logend&amp;lt;/log-end&amp;gt;&amp;lt;description&amp;gt;$description&amp;lt;/description&amp;gt;&amp;lt;from&amp;gt;&amp;lt;member&amp;gt;$srczone&amp;lt;/member&amp;gt;&amp;lt;/from&amp;gt;&amp;lt;to&amp;gt;&amp;lt;member&amp;gt;$dstzone&amp;lt;/member&amp;gt;&amp;lt;/to&amp;gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 16:01:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126779#M1290</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2016-11-16T16:01:20Z</dc:date>
    </item>
    <item>
      <title>Re: Create Securit policy with API</title>
      <link>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126789#M1292</link>
      <description>&lt;P&gt;you should open a TAC case because this command should create an error message.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You need to fix the XPATH as you forget an 'entry' for the rule:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;/api/?type=config&amp;amp;action=get&amp;amp;xpath=/config/devices/entry[@name='localhost.localdomain']/vsys/entry[@name='vsys1']/rulebase/security/rules/entry[@name...&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 16:40:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126789#M1292</guid>
      <dc:creator>cpainchaud</dc:creator>
      <dc:date>2016-11-16T16:40:22Z</dc:date>
    </item>
    <item>
      <title>Re: Create Securit policy with API</title>
      <link>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126792#M1295</link>
      <description>&lt;P&gt;Glad it was something simple. I actually just realized a few minutes ago that I was also running get instead of set; when you run set you do actually get a malformed entry but when you run get it just says success regarless if there is a rule that matches the name or not even when I add the missing 'entry' statement.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 16:44:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/automation-api-discussions/create-securit-policy-with-api/m-p/126792#M1295</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2016-11-16T16:44:26Z</dc:date>
    </item>
  </channel>
</rss>

