- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-13-2019 11:58 PM
Hi,
I am migrating an ASA config over to PANOS using the migration tool. I havent been able to figure out why the static nat rules are not migrating successfully. This is also breaking the ACL conversion as well. I am on expedition tool 1.1.33.
thanks
08-14-2019 02:16 AM
Hi @Tarik_Admani ,
I think you'll have better luck with your question in the Expedition discussions area so I moved it here.
Good luck !
-Kiwi.
08-14-2019 06:36 AM
Could you share the configuration with us (or at least a relevant snippet of the configuration) to our email (fwmigrate at paloaltonetworks dot com) to check what may be happening?
08-14-2019 07:59 AM
Yes sir,
I see these errors in the migraiton tool -
Nat RuleID [89] is trying to apply a group to the translated packet. [nat (inside,outside) static x.x.x.x]. Rule not imported
I sent a scrubbed snippet to the email alias - basically this example of the nat conversion is in one of the 7 step migration videos on youtube.
Thanks,
08-16-2019 10:18 AM - edited 08-16-2019 10:19 AM
Thanks for the help, to update anyone else that runs into this, I had to downgrade expedition to 1.1.28 and the nat rules and security policies migrated, going through the final review right now.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!