<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: palo alto and panorama integration in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132742#M47115</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would suugest you to go through Panorama Admin guide to understand Device Group and Template in detail.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But never delete existing security policies on PA firewall and commit locally. All tarrfic will get denied as you have no policies on PA firewall to allow it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you are running latest verion of PAN OS like 7.X.X , you can import all configuration of PA firewall on Panorama and in future you can manage all configuration of firewall from Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I hope this finds you well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best Reagrds,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Fozail&lt;/P&gt;</description>
    <pubDate>Wed, 14 Dec 2016 08:07:56 GMT</pubDate>
    <dc:creator>fozail</dc:creator>
    <dc:date>2016-12-14T08:07:56Z</dc:date>
    <item>
      <title>palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131759#M46980</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i would like to seek and advice from you all regarding the palo alto firewall and panorama integration&lt;/P&gt;&lt;P&gt;we have deployed 2 pair palo alto firewalls 1 pair in DC A and 1 pair in DC B.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;now we want to deploy the panorama so for the common rule we can use panorama to create and push the common rule &amp;nbsp;to both DC&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;kindly your advice how to do it. what i know so far&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1\ on each fw add the panorama ip address&lt;/P&gt;&lt;P&gt;2\ on panorama add the serial number of the palo alto firewall&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;untill this parts i quite understand but i still not really sure about the&amp;nbsp;&lt;/P&gt;&lt;P&gt;template, device group etc, do we need to import fw configuration into the panorama?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;kindly advice for the steps required to achieve the requirement&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Dec 2016 14:28:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131759#M46980</guid>
      <dc:creator>IndramE</dc:creator>
      <dc:date>2016-12-07T14:28:58Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131981#M46997</link>
      <description>&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/70/panorama/panorama_adminguide/manage-firewalls/add-a-firewall-as-a-managed-device" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/70/panorama/panorama_adminguide/manage-firewalls/add-a-firewall-as-a-managed-device&lt;/A&gt;&lt;/P&gt;&lt;P&gt;After adding the device in panorama, you can start pushing new config from panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you wish to import the existing device config in panorama, then you may refer below KB:-&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/70/pan-os/newfeaturesguide/panorama-features/firewall-configuration-import-into-panorama" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/70/pan-os/newfeaturesguide/panorama-features/firewall-configuration-import-into-panorama&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Dec 2016 08:43:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131981#M46997</guid>
      <dc:creator>poagrawal</dc:creator>
      <dc:date>2016-12-08T08:43:19Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131983#M46998</link>
      <description>&lt;P&gt;Hi poagrawal&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks for your reply. i dont have any issue for add palo alto fw to panorama. as i mentioned i'm not quite sure about the template and device group after adding the fw to panorama&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;as per my understanding we need to create device group and template . kindlly your advice more on this&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If you wish to import the existing device config in panorama, then you may refer below KB:-&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;gt; actually do really need to import the palo alto config to panorama since currenlty my palo alto fw up and running.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;if we not import it, based on my test i will cause the commit failed if i use the same object when i creating policy from panormana. so may i know what is the correct procedure for palo alto fw and panorama integration&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Dec 2016 09:20:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/131983#M46998</guid>
      <dc:creator>IndramE</dc:creator>
      <dc:date>2016-12-08T09:20:21Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132041#M47005</link>
      <description>&lt;P&gt;This&amp;nbsp;&lt;A href="https://www.paloaltonetworks.com/documentation/70/panorama/panorama_adminguide/manage-firewalls" target="_blank"&gt;link&lt;/A&gt;&amp;nbsp;will help you understand the basics of device groups and templates; there really isn't any advice to give you unless you have a more specific question. You will need to setup device groups and device templates however your enviroment needs them.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Dec 2016 13:50:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132041#M47005</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2016-12-08T13:50:41Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132125#M47025</link>
      <description>&lt;P&gt;Hi Indram,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is safe to add the firewalls to panorama, the default settings will be only for communication between both Panorama-Managed firewalls, Panorama place newly added firewalls to a default group and does not Apply any settings as long as you don't add them to a specific group.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Dec 2016 20:15:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132125#M47025</guid>
      <dc:creator>oscaringosv</dc:creator>
      <dc:date>2016-12-08T20:15:39Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132227#M47038</link>
      <description>&lt;P&gt;This is what i think should be followed.&lt;/P&gt;&lt;P&gt;On Panormana create standard template.&lt;/P&gt;&lt;P&gt;Login to fw locally , assign mgmt IP , assign panorama IP , deletes exixting security policy , VR, zones,interfaces commit changes.&lt;/P&gt;&lt;P&gt;Add FW in panormana once you see it connected push standard template config to fw.&lt;/P&gt;&lt;P&gt;Once template is pushed. commit device group config.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Dec 2016 10:13:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132227#M47038</guid>
      <dc:creator>fatboy1607</dc:creator>
      <dc:date>2016-12-09T10:13:23Z</dc:date>
    </item>
    <item>
      <title>Re: palo alto and panorama integration</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132742#M47115</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would suugest you to go through Panorama Admin guide to understand Device Group and Template in detail.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But never delete existing security policies on PA firewall and commit locally. All tarrfic will get denied as you have no policies on PA firewall to allow it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you are running latest verion of PAN OS like 7.X.X , you can import all configuration of PA firewall on Panorama and in future you can manage all configuration of firewall from Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I hope this finds you well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best Reagrds,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Fozail&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2016 08:07:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/palo-alto-and-panorama-integration/m-p/132742#M47115</guid>
      <dc:creator>fozail</dc:creator>
      <dc:date>2016-12-14T08:07:56Z</dc:date>
    </item>
  </channel>
</rss>

