Python script to retrieve unsued/ zero hits security policy on PAN firewall

Reply
L2 Linker

Python script to retrieve unsued/ zero hits security policy on PAN firewall

I an new to automation though worked on cisco automation before, want to know any basic scripts for PAN firewalls with Python.

 

Note: New idea are welcome

L4 Transporter

Re: Python script to retrieve unsued/ zero hits security policy on PAN firewall

As of PANOS 8.0, there is no rule hit count for policies.

L4 Transporter

Re: Python script to retrieve unsued/ zero hits security policy on PAN firewall

L3 Networker

Re: Python script to retrieve unsued/ zero hits security policy on PAN firewall

8.1 now has this available in gui

 

should be fairly straightforward to use xml api to find xpath to make python script

L4 Transporter

Re: Python script to retrieve unsued/ zero hits security policy on PAN firewall

Unused rules are easy, either through the web GUI or the CLI.  It should be possible to run the CLI command via the API as an "operational command" call.

 

https://live.paloaltonetworks.com/t5/Learning-Articles/How-to-Identify-Unused-Policies-on-a-Palo-Alt...

 

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!