Expedition Discussions
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Expedition Discussions

Discussions

Resolved! ML gets stuck at "Pending"

I started by running the command scp export log traffic start-time equal 2018/07/30@00:00:00 end-time equal 2018/07/30@23:45:00 to expedition@172.30.200.117:/PALogs/mltest.csv on my PA220. root@Expedition:/PALogs# ls -ltotal 64296-rw-rw-r-- 1 expedition expedition 65830760 Aug 1 17:35 mltest.csvdrwxr-xr-x 2 www-data www-data 4096 Aug 1 ...

Untitled.png
mbowling by L1 Bithead
  • 46424 Views
  • 26 replies
  • 3 Likes

If You Need an OVA...

I created an OVA for my team and put it up here (Note, this isn't the official release now offered by PANW): https://drive.google.com/open?id=1Z9GrCF8I_BZzpbEmEh6G75npo05_4G0c Be sure to go Settings > M. Learning > and change the Expedition ML Address address to your VM's IP. Then return to the Dashboad and Start the Agent. [UPDATE 6.4...

trice by L1 Bithead
  • 73459 Views
  • 46 replies
  • 23 Likes

Resolved! How to Upload configuration files bigger than 2MB

Expedition uses APACHE as a web server and PHP as module for the scripts. By default PHP allow users to upload files with a maximum size of 2M, this can be updated by changing the PHP.ini sudo vi /etc/php/7.0/apache2/php.ini go to line where this variable is defined upload_max_filesize = 2M and replace by upload_max_filesize = 250M There...

alestevez by L7 Applicator
  • 30188 Views
  • 5 replies
  • 11 Likes

(Many to One Source NAT with Bi-directional ) Convert Cisco ASA FW NAT to Palo Alto FW NAT

Hi All, I have been trying to find an Palo Alto article for Many to One Source NAT with Bi-directional but cannot find the exact article. Most of it, just for Destination NAT. When I tried to understand the concept, it quite confusing. Below is the screenshot from Cisco ASA FW ASDM. When configure Cisco ASA FW, it is not that hard for this Ma...

AceTeamSecurity_0-1778146788233.png
AceTeamSecurity_1-1778147161859.png

Preparing Exp Tool for Fortigate to PA migration

Several months ahead we are going to purchase PA firewall to replace for our Fortigate firewall, on one of my site office.I would like to prepare in advance for the Exp Tools.In the front page, there is link to download the Exp Tools (Ubuntu 20.04) but it seem not working the URL.Why is that? Also once I able to download the installer, is there ...

Sophos UTM Firewall Migration assist with Expedition

Hello, Due to the recent announcement of discontinuing the Sophos UTM/SG Firewall many customers are seeking alternatives. It would be great to be able to migrate configurations from the old Sophos/Astaro Firewalls to Palo Alto Networks Strata NGF This would provide the potential customers a benefit in an even easier migration to the PA-400 se...

Check Point R80.30 In-line layers conversion

Hi, I'm stumbeling upon an issue while importing a CP R80.30 configuration, exported with the github script. When I import the config in expedition (1.1.70), it only seems to import the parent rules for the in-line layers and not its members: as you can see, there is a management section (5 rules) with no in-line layer. These rules get conver...

CP Layers.png
Migration tool results.png
Arne-VDH by L3 Networker
  • 5338 Views
  • 4 replies
  • 0 Likes

Cisco ASA Config to Palo Alto

Hi all, Just want to have discussion on the Cisco ASA config to Palo Alto Config. There is a NAT issue when we migrate the configuration. For Many to One, Palo Alto can detect Many to One NAT. When we do the migration, we detect the Many to One NAT should have bi-directional NAT on the ASDM GUI. Is it expected like this that, Palo Alto cannot...

Momoj by L2 Linker
  • 1374 Views
  • 1 replies
  • 0 Likes

Expedition can not access Panorama 11.1.x

Hello together, we have our Panorama already on 11.1.3-h1 and Expedition can not download its config. The problem seems to be the new format of the API key. It doesn't matter if I create a key manually and paste it into Expedtion or input username/password to Expedition and let it create an API key.Kind regards Martin

Palo Alto has deprecated the repository

According to a Palo Alto rep: "I'm afraid we have deprecated the Expedition repository and shutdown the install link." So does anyone have an install file? Even if we have the install does that break the install because other files are located in it?

J.SCHWAB by L0 Member
  • 1402 Views
  • 0 replies
  • 2 Likes

Resolved! finding rules that need dependent apps adding

Hi, Say I have a firewall that just been converted from Cisco to Palo alto and it got 1000 rules, is there a way I can list out all the rules that have dependent apps needing to be added to the the Applications on the rule. So I don't have to go into each rule and see if there are any dependent apps?

JHALL3 by L2 Linker
  • 2411 Views
  • 4 replies
  • 0 Likes

If You Need an OVA...

I created an OVA for my team and put it up here (Note, this isn't the official release now offered by PANW): https://drive.google.com/open?id=1Z9GrCF8I_BZzpbEmEh6G75npo05_4G0c Be sure to go Settings > M. Learning > and change the Expedition ML Address address to your VM's IP. Then return to the Dashboad and Start the Agent. [UPDATE 6.4...

trice by L1 Bithead
  • 73459 Views
  • 46 replies
  • 23 Likes
  • 1186 Posts
  • 89 Subscriptions
Labels