<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Search for hosts/IPs across entire PA environment in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1286#M993</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another suggestion is to export the running configuration file on an xml editor and search for "IP/hostname" that are in the retired list and we can find them. As we find them we can either delete the instance or edit it as needed.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="ip-obj.PNG.png" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/9138_ip-obj.PNG.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 16 Oct 2013 15:17:39 GMT</pubDate>
    <dc:creator>Phoenix</dc:creator>
    <dc:date>2013-10-16T15:17:39Z</dc:date>
    <item>
      <title>Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1284#M991</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is the most effective method for searching for usage of a hostname or IP address across our entire PA environment?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The goal is to be able to identify and delete objects and rules that have been created in our firewalls that correspond to hosts/IPs that have been retired from our environment. We get notified of those retirements, so I'd like to be able to easily scan our PA environment to determine if they were used anywhere. If they were, we'll go in and clean up any reference to them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our environment consists of Panorama and several firewalls. General Enterprise firewall settings come from Panorama to all firewalls, but local admins can add rules to their specific firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Oct 2013 16:31:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1284#M991</guid>
      <dc:creator>gwhyte</dc:creator>
      <dc:date>2013-10-15T16:31:20Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1285#M992</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The best way to verify that would be do is from the CLI&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) Run the command set cli config-output-format set&lt;/P&gt;&lt;P&gt;2) PA-200&amp;gt;configure ( enter the configuration mode)&lt;/P&gt;&lt;P&gt;3) PA-200 # show ( just run the command 'show')&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This will show you the entire configuration, and then you can search fro the ip by using the character '/' on the CLI output, then search for the string ( which in this case would be your IP address that has been retired). Doing this will highlight any match for the IP address in the configuration. Using the key 'n' will keep showing you the next match for the ip in the config, you can keep doing that and figure out where in the config is that Ip being referenced.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 02:18:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1285#M992</guid>
      <dc:creator>Chatri</dc:creator>
      <dc:date>2013-10-16T02:18:23Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1286#M993</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another suggestion is to export the running configuration file on an xml editor and search for "IP/hostname" that are in the retired list and we can find them. As we find them we can either delete the instance or edit it as needed.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="ip-obj.PNG.png" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/9138_ip-obj.PNG.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 15:17:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1286#M993</guid>
      <dc:creator>Phoenix</dc:creator>
      <dc:date>2013-10-16T15:17:39Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1287#M994</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/u1/10567"&gt;Chatri&lt;/A&gt; and &lt;A href="https://live.paloaltonetworks.com/u1/8931"&gt;Phoenix&lt;/A&gt; have some good suggestions. However, I'm also curious about this but want a more 'global' perspective - like &lt;A href="https://live.paloaltonetworks.com/u1/3631"&gt;gwhyte&lt;/A&gt; mentioned - with Panorama and multiple firewalls, etc. The root objective for me, then, is to find a way to search all shared *and* local objects from one place! I'm not sure if this is possible but I'd like to hear from the PAN warriors out there...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 18:48:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1287#M994</guid>
      <dc:creator>tommyluke</dc:creator>
      <dc:date>2013-10-16T18:48:21Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1288#M995</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tommy,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In 5.0 software versions we do have a feature called "Export device State". &lt;/P&gt;&lt;P&gt;Seen under, Device Tab &amp;gt; Setup &amp;gt; Operations&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This would export not just the local configuration file of the firewall but also has the configuration file for Shared config from panorama, template configuration from panorama certificates and so on.&lt;/P&gt;&lt;P&gt;We can search this section for object references and modify or edit as informed earlier.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 18:52:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1288#M995</guid>
      <dc:creator>Phoenix</dc:creator>
      <dc:date>2013-10-16T18:52:13Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1289#M996</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/u1/8931"&gt;Phoenix&lt;/A&gt; That makes sense, thank you. However, a person would be required to perform the export on each and every device/appliance that one manages, correct?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 19:26:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1289#M996</guid>
      <dc:creator>tommyluke</dc:creator>
      <dc:date>2013-10-16T19:26:39Z</dc:date>
    </item>
    <item>
      <title>Re: Search for hosts/IPs across entire PA environment</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1290#M997</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tommy,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes you are right. One has to export manually each device where a change is needed and correct manually what ever changes have to be made.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Oct 2013 20:31:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/search-for-hosts-ips-across-entire-pa-environment/m-p/1290#M997</guid>
      <dc:creator>Phoenix</dc:creator>
      <dc:date>2013-10-16T20:31:49Z</dc:date>
    </item>
  </channel>
</rss>

