<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Panorama &amp;amp; &amp;quot;Managed Devices&amp;quot; unable to connect in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228367#M65670</link>
    <description>&lt;P&gt;I believe&amp;nbsp;I have set up the Panorama and Firewalls correctly as per a few different KB articles I've read. I've check connectivity between the MGT interfaces, made sure that the attempts weren't being denied due to the fact that "permitted IP's" were configured. I even checked out a TCP dump of the connection on TCP 3978, and see ack's going out to the firewalls, however any return traffic just comes back stating a window size of 0. Any&amp;nbsp;advice?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;P.S.&lt;/P&gt;&lt;P&gt;I've checked the MTU and have no SSL-Certificates setup.&lt;/P&gt;</description>
    <pubDate>Mon, 27 Aug 2018 14:15:55 GMT</pubDate>
    <dc:creator>aayoung</dc:creator>
    <dc:date>2018-08-27T14:15:55Z</dc:date>
    <item>
      <title>Panorama &amp; "Managed Devices" unable to connect</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228367#M65670</link>
      <description>&lt;P&gt;I believe&amp;nbsp;I have set up the Panorama and Firewalls correctly as per a few different KB articles I've read. I've check connectivity between the MGT interfaces, made sure that the attempts weren't being denied due to the fact that "permitted IP's" were configured. I even checked out a TCP dump of the connection on TCP 3978, and see ack's going out to the firewalls, however any return traffic just comes back stating a window size of 0. Any&amp;nbsp;advice?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;P.S.&lt;/P&gt;&lt;P&gt;I've checked the MTU and have no SSL-Certificates setup.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Aug 2018 14:15:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228367#M65670</guid>
      <dc:creator>aayoung</dc:creator>
      <dc:date>2018-08-27T14:15:55Z</dc:date>
    </item>
    <item>
      <title>Re: Panorama &amp; "Managed Devices" unable to connect</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228412#M65675</link>
      <description>&lt;P&gt;Window size of zero may not be an issue if the connection hasn't opened yet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The firewalls themselves make the connection to Panorama, so you can grab a tcpdump on the firewall's management interface using Panorama's IP as the filter:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;tcpdump filter "host 192.0.2.1" snaplen 0&lt;/PRE&gt;&lt;P class="p1"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Once that's completed, you can transfer it via SCP or TFTP if you want to take a further look. Check to see that there's an established connection. If not, there should be some frames that lead you to the root cause.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="p1"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;One note: if the firewall's management interface is subject to security policy because it traverses the firewall, you'll need a security rule (and possibly source-NAT) to ensure it's allowed and can route.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Aug 2018 17:57:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228412#M65675</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2018-08-27T17:57:49Z</dc:date>
    </item>
    <item>
      <title>Re: Panorama &amp; "Managed Devices" unable to connect</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228550#M65691</link>
      <description>&lt;P&gt;Thanks, sorry got caught up yesterday. I'm stumped, the TCP connection will get all the way to FIN and then I'll see a retransmission. Followed by another 3-way handshake and more of the same. I think I'm just going to forgo using the MGT ports and connect them via in-band L3 ports. Thanks for trying to help.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Aug 2018 13:50:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/panorama-amp-quot-managed-devices-quot-unable-to-connect/m-p/228550#M65691</guid>
      <dc:creator>aayoung</dc:creator>
      <dc:date>2018-08-28T13:50:30Z</dc:date>
    </item>
  </channel>
</rss>

