Expedition server sizing
Anyone know server sizing requirements for this? Minimum cpu, memory and storage? Also, what is the recommended way to install?
Anyone know server sizing requirements for this? Minimum cpu, memory and storage? Also, what is the recommended way to install?
I started by running the command scp export log traffic start-time equal 2018/07/30@00:00:00 end-time equal 2018/07/30@23:45:00 to expedition@172.30.200.117:/PALogs/mltest.csv on my PA220. root@Expedition:/PALogs# ls -ltotal 64296-rw-rw-r-- 1 expedition expedition 65830760 Aug 1 17:35 mltest.csvdrwxr-xr-x 2 www-data www-data 4096 Aug 1 ...
I created an OVA for my team and put it up here (Note, this isn't the official release now offered by PANW): https://drive.google.com/open?id=1Z9GrCF8I_BZzpbEmEh6G75npo05_4G0c Be sure to go Settings > M. Learning > and change the Expedition ML Address address to your VM's IP. Then return to the Dashboad and Start the Agent. [UPDATE 6.4...
Expedition uses APACHE as a web server and PHP as module for the scripts. By default PHP allow users to upload files with a maximum size of 2M, this can be updated by changing the PHP.ini sudo vi /etc/php/7.0/apache2/php.ini go to line where this variable is defined upload_max_filesize = 2M and replace by upload_max_filesize = 250M There...
Dear all, I following the administartor guide to install the expediton, but just got the following information, it doesn't install the expedition normally. Do you guys has any suggestions? THANKS. expedition@expedition:/tmp$ sudo ./initSetup_v2.0.sh ***************************************************************************************** ** ...
Hi dears, i need your help to convert some firewalls configuration from pfsense to PA5250. Please, I need your help dear
Hello, After do a new deploy of Expedition 1.1.46.1, the BPA analyzer do not work, the status "Last Run Never analyzed" don't change and I can't see any result on WEB UI. Remembering that this is a "Greenfield" deploy of Expedition 1.1.46.1and there is no errors on Expedition checks. Thanks, Bruno Fernando Security Consultant #PCNSE #PCNSC
I am working with a PAN 3220 and the goal is to run the config through Expedition and the 'skillet' baseline in order to provide some feedback on the overall configuration and any optimizations. I have access to a configuration snapshot and Panorama as well. I start a new project (running the latest updated version of the tool) and import the co...
Hi there, We need to migrate from Cisco ASA (HA Pair Active/Standby) with multi-context (3 contexts) to Palo Alto vsys. What’s the best approach and effective way to accomplish this task? I’ve looked into Expedition tool, but not sure if it’s really good and accurate method for such a task. Thanks.
Just noticed after importing a Check Point migration into a Panorama base config and merging the objects that the set commands for address objects all contain a /32 mask in the address field that did not exist in Check Point. The object > address view in the Expedition project all contain a 32 CIDR. Any recent changes to cause this?
More of an advice posting than a request for assistance. Do not make your PA firewall admin password really crazy long and complex (like I did ~ at 19 characters long). If you do, you might get tripped up by Expedition when you try and add a device and the user API keys. Background: New PA-440 Firewall (FW) Stood up Expedition VM on Monday t...
Hi I am trying to identify duplicated records for different firewalls so we can identify and change them before importing them into Panorama for syncing purposes. However, as of now, when exported, the src files information is not included in the export. for address, groups and etc, I could still work around it by adding a tags when i filter ...
How do you add a new model of firewall into Expedition? For instance, I have both versions of Expedition running and the only models I can add are PA200, 220, 500, 800, 3000, 3200... I would like to add a 3220, 850, 820, 220R, and the newer models like the 415-5G, 1410, 450 and 460. How do you do that?
Hi all, I came across an issue which seems to exist already for some years, but I haven't found any solution for it. I need to install Expedition, so I checked the installation guide how to do this. I exactly followed the steps described there, i.e. - I downloaded the Ubuntu Server 20.04.* LTS (64bit AMD) ISO and installed it (using VMware P...
HI, I am bringing in a Palo config from a live firewall (merged-config) so that I can do a bulk update to all firewall rules, but when I look at the policy it has added in a Hip Profile (any). We don't use Hip so is there a way I can stop expo from adding this in, as it makes it very difficult to do a diff check on the rules updated from with t...
Hello I have an old PA5050, running PANOS 8.1.24. I need to replace it with a new PA3410 running PANOS10.2 I trying to find the best way to migrate my configuration from my PA5050 to my new PA3410. Can expedition can help me to do that ? Any other idea ? Thanks
Hoping someone from the development team can answer a few rapid fire questions. I have search around and maybe I am not finding the answers but there are several "buttons" in Expedition that seem like they were put there for a reason but maybe aren't yet functional: Modifying the XML API Push has options for different operations (Set,Edit,Ren...
I am doing ASA to PA migration. After editing the original configuration and importing base image I am ready to merge and export. Merge works fine and doesn't show any errors. But every time i click Generate XML & Set Output it gets stuck. I've tried in different browsers, I've tried with different base configs, I've upgraded Expedition to...
I need to move many policies from 2 PA firewalls to another new PA firewall. What's the easier way to do that? The new PA firewall has it's own configuration. So I can't just simply do export and import xml.

