<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: I cannot move the vlan interface IP to new vlan 10 interface in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230352#M124430</link>
    <description>&lt;P&gt;This is what I can see in the command &amp;gt; show jobs id #&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;Enqueued Dequeued ID Type Status Result Completed&lt;BR /&gt;------------------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;2025/05/29 06:53:15 06:53:15 4630 CommitAll FIN FAIL 06:56:00&lt;BR /&gt;Warnings:&lt;BR /&gt;Duplicate certificate subject found:&lt;BR /&gt;/CN=vpn.domain.com&lt;BR /&gt;/C=US/CN=Forward-Trust-CA&lt;BR /&gt;/C=US/O=DigiCert Inc/OU=&lt;A href="http://www.digicert.com/CN=DigiCert" target="_blank"&gt;www.digicert.com/CN=DigiCert&lt;/A&gt; Global Root CA&lt;BR /&gt;/C=US/CN=Forward-Untrust-CA&lt;BR /&gt;/C=US/CN=Forward-Trust-CA&lt;BR /&gt;/CN=vpn.domain.com&lt;BR /&gt;CN = vpn.domain.com&lt;BR /&gt;/CN=vpn.domain.com&lt;/P&gt;
&lt;P&gt;Aggregate-ethernet interface ae1 has no member interfaces.&lt;BR /&gt;Aggregate-ethernet interface ae2 has no member interfaces.&lt;BR /&gt;Certificate central_2023_vpn.domain.com in shared expired on Jun 13 23:59:59 2024 GMT&lt;BR /&gt;Certificate Sophos in shared expired on Jun 29 00:00:00 2023 GMT&lt;BR /&gt;Certificate crt.GoogleIDPMetadata2024-1.shared in shared expired on Sep 23 19:21:06 2024 GMT&lt;BR /&gt;Certificate 3050_2023_vpn.domain.com in shared expired on Jun 13 23:59:59 2024 GMT&lt;BR /&gt;Certificate vpn.domain.com2022 in shared expired on Apr 26 23:59:59 2023 GMT&lt;BR /&gt;External Dynamic List MK EDL anti-phishing Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL TOR Nodes Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL Anti Phishing Domains Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL Anti-Phishing URLs Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL LightboardSeriesYoutubeVideos is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;EDL(vsys1/MK EDL Minemeld inboundfeedhc http ip) Unable to fetch external dynamic list. Couldn't connect to server. Using old copy for refresh.&lt;BR /&gt;EDL(vsys1/MK EDL block advertising Pi-hole is using it ip) Downloaded file is not a text file. Using old copy for refresh.&lt;BR /&gt;EDL(vsys1/MK EDL LightboardSeriesYoutubeVideos url) Unable to fetch external dynamic list. Couldn't connect to server. Using old copy for refresh.&lt;/P&gt;
&lt;P&gt;Details:In router default: address 192.168.1.1/24 on interface vlan has overlapping subnet with address 192.168.1.1/24 on interface vlan.10.(Module: routed)&lt;BR /&gt;client routed phase 1 failure&lt;BR /&gt;Commit failed&lt;BR /&gt;Local configuration size: 18 KB&lt;BR /&gt;Predefined configuration size: 19 MB&lt;BR /&gt;Merged configuration size(local, panorama pushed, predefined): 25 MB&lt;BR /&gt;Maximum recommended merged configuration size: 23 MB (108% configured)&lt;/P&gt;</description>
    <pubDate>Thu, 29 May 2025 12:04:18 GMT</pubDate>
    <dc:creator>J.Santos708860</dc:creator>
    <dc:date>2025-05-29T12:04:18Z</dc:date>
    <item>
      <title>I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230307#M124422</link>
      <description>&lt;P&gt;Hi, can anyone help me? I keep receiving this error even after I removed or changed the IP on the VLAN interface.&lt;/P&gt;
&lt;P&gt;I also tried pushing VLAN interface 10 (without an IP) first along with the subinterface. It was successful, but when I try to deploy the IP change, the error still occurs.&lt;/P&gt;
&lt;P&gt;I am deploying from Panorama.&lt;/P&gt;
&lt;P&gt;In router default: address 192.168.1.1/24 on interface vlan has overlapping subnet with address 192.168.1.1/24 on interface vlan.10.(Module: routed)&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 01:05:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230307#M124422</guid>
      <dc:creator>J.Santos708860</dc:creator>
      <dc:date>2025-05-29T01:05:11Z</dc:date>
    </item>
    <item>
      <title>Re: I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230309#M124423</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/522563181"&gt;@J.Santos708860&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As I understand you are getting error while making the changes from Panorama for VLAN interface IP. May I check what error are you getting.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 01:34:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230309#M124423</guid>
      <dc:creator>mshekh</dc:creator>
      <dc:date>2025-05-29T01:34:37Z</dc:date>
    </item>
    <item>
      <title>Re: I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230352#M124430</link>
      <description>&lt;P&gt;This is what I can see in the command &amp;gt; show jobs id #&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;Enqueued Dequeued ID Type Status Result Completed&lt;BR /&gt;------------------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;2025/05/29 06:53:15 06:53:15 4630 CommitAll FIN FAIL 06:56:00&lt;BR /&gt;Warnings:&lt;BR /&gt;Duplicate certificate subject found:&lt;BR /&gt;/CN=vpn.domain.com&lt;BR /&gt;/C=US/CN=Forward-Trust-CA&lt;BR /&gt;/C=US/O=DigiCert Inc/OU=&lt;A href="http://www.digicert.com/CN=DigiCert" target="_blank"&gt;www.digicert.com/CN=DigiCert&lt;/A&gt; Global Root CA&lt;BR /&gt;/C=US/CN=Forward-Untrust-CA&lt;BR /&gt;/C=US/CN=Forward-Trust-CA&lt;BR /&gt;/CN=vpn.domain.com&lt;BR /&gt;CN = vpn.domain.com&lt;BR /&gt;/CN=vpn.domain.com&lt;/P&gt;
&lt;P&gt;Aggregate-ethernet interface ae1 has no member interfaces.&lt;BR /&gt;Aggregate-ethernet interface ae2 has no member interfaces.&lt;BR /&gt;Certificate central_2023_vpn.domain.com in shared expired on Jun 13 23:59:59 2024 GMT&lt;BR /&gt;Certificate Sophos in shared expired on Jun 29 00:00:00 2023 GMT&lt;BR /&gt;Certificate crt.GoogleIDPMetadata2024-1.shared in shared expired on Sep 23 19:21:06 2024 GMT&lt;BR /&gt;Certificate 3050_2023_vpn.domain.com in shared expired on Jun 13 23:59:59 2024 GMT&lt;BR /&gt;Certificate vpn.domain.com2022 in shared expired on Apr 26 23:59:59 2023 GMT&lt;BR /&gt;External Dynamic List MK EDL anti-phishing Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL TOR Nodes Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL Anti Phishing Domains Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL Anti-Phishing URLs Error 401 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;External Dynamic List MK EDL LightboardSeriesYoutubeVideos is configured with no certificate profile. Please select a certificate profile for performing server certificate validation.&lt;BR /&gt;EDL(vsys1/MK EDL Minemeld inboundfeedhc http ip) Unable to fetch external dynamic list. Couldn't connect to server. Using old copy for refresh.&lt;BR /&gt;EDL(vsys1/MK EDL block advertising Pi-hole is using it ip) Downloaded file is not a text file. Using old copy for refresh.&lt;BR /&gt;EDL(vsys1/MK EDL LightboardSeriesYoutubeVideos url) Unable to fetch external dynamic list. Couldn't connect to server. Using old copy for refresh.&lt;/P&gt;
&lt;P&gt;Details:In router default: address 192.168.1.1/24 on interface vlan has overlapping subnet with address 192.168.1.1/24 on interface vlan.10.(Module: routed)&lt;BR /&gt;client routed phase 1 failure&lt;BR /&gt;Commit failed&lt;BR /&gt;Local configuration size: 18 KB&lt;BR /&gt;Predefined configuration size: 19 MB&lt;BR /&gt;Merged configuration size(local, panorama pushed, predefined): 25 MB&lt;BR /&gt;Maximum recommended merged configuration size: 23 MB (108% configured)&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 12:04:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230352#M124430</guid>
      <dc:creator>J.Santos708860</dc:creator>
      <dc:date>2025-05-29T12:04:18Z</dc:date>
    </item>
    <item>
      <title>Re: I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230353#M124431</link>
      <description>&lt;P&gt;You have same IP/subnet configured in 2 places:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Details:In router default: address 192.168.1.1/24 on interface vlan has overlapping subnet with address 192.168.1.1/24 on interface vlan.10.(Module: routed)&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 12:24:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230353#M124431</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2025-05-29T12:24:30Z</dc:date>
    </item>
    <item>
      <title>Re: I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230354#M124432</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hi, my goal is to move the IP address 192.168.1.1 from the VLAN interface to VLAN 10.&lt;/P&gt;
&lt;P&gt;In Panorama, I have already removed the assigned IP address from the VLAN interface and assigned it to the VLAN 10 interface. The virtual router and security zone are both set to None as well.&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 12:30:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230354#M124432</guid>
      <dc:creator>J.Santos708860</dc:creator>
      <dc:date>2025-05-29T12:30:27Z</dc:date>
    </item>
    <item>
      <title>Re: I cannot move the vlan interface IP to new vlan 10 interface</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230362#M124436</link>
      <description>&lt;P&gt;Is&amp;nbsp;&lt;SPAN&gt;192.168.1.1 production IP that Palo uses to connect to Panorama?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If not then temporarily remove it from old location in Panorama, commit, add to new location and commit.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If it is used to communicate with Panorama then you could force commit template values from Panorama but without knowing your setup I can't vouch for that approach because it will wipe all local overrides in the firewall.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 29 May 2025 13:26:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/i-cannot-move-the-vlan-interface-ip-to-new-vlan-10-interface/m-p/1230362#M124436</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2025-05-29T13:26:37Z</dc:date>
    </item>
  </channel>
</rss>

