Expedition Discussions
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Expedition Discussions

Discussions

Resolved! ML gets stuck at "Pending"

I started by running the command scp export log traffic start-time equal 2018/07/30@00:00:00 end-time equal 2018/07/30@23:45:00 to expedition@172.30.200.117:/PALogs/mltest.csv on my PA220. root@Expedition:/PALogs# ls -ltotal 64296-rw-rw-r-- 1 expedition expedition 65830760 Aug 1 17:35 mltest.csvdrwxr-xr-x 2 www-data www-data 4096 Aug 1 ...

Untitled.png
mbowling by L1 Bithead
  • 46174 Views
  • 26 replies
  • 3 Likes

If You Need an OVA...

I created an OVA for my team and put it up here (Note, this isn't the official release now offered by PANW): https://drive.google.com/open?id=1Z9GrCF8I_BZzpbEmEh6G75npo05_4G0c Be sure to go Settings > M. Learning > and change the Expedition ML Address address to your VM's IP. Then return to the Dashboad and Start the Agent. [UPDATE 6.4...

trice by L1 Bithead
  • 73014 Views
  • 46 replies
  • 23 Likes

Resolved! How to Upload configuration files bigger than 2MB

Expedition uses APACHE as a web server and PHP as module for the scripts. By default PHP allow users to upload files with a maximum size of 2M, this can be updated by changing the PHP.ini sudo vi /etc/php/7.0/apache2/php.ini go to line where this variable is defined upload_max_filesize = 2M and replace by upload_max_filesize = 250M There...

alestevez by L7 Applicator
  • 30128 Views
  • 5 replies
  • 11 Likes

Rule enrichment import gets stuck

while attempting to import from rule enrichment, expedition stays in pending state; fails to complete. notice behaviour is dependent on rule being imported. Some rule can import, others cannot. Looking for suggestions on troubleshooting expedition to address this. thanks

Jobs and Task Manager won't start

Our expedition instance is running 1.1.80. Jobs and Task Manager starts and about 3 seconds later, it stops. We have plenty of disk space, RAM and the CPU is not being over run. thepanReadOrders.log file has this entry: Fatal error: Uncaught ErrorException: stream_socket_client(): unable to connect to tcp://localhost:5672 (Connection ref...

Expedition - Panorama Config Export

Hello, I'm trying to get the XML config of just 1 of my firewalls in Panorama and import it into Expedition. Simple idea, however not obvious how to do it. Here's what I've tried: 1: Exporting config directly from the firewall just gives a minimal config.2: Exporting from Panorama, gives you everything, and Expedition doesn't seem to like it. ...

Resolved! Installation process Expedition

Hi Guys, We have ASA firewalls which we are in the process of migrating to Palo-Alto. I want to know if we can run the migration tool on Window server or if i can access the GUI based migration tool (url link) on windows based server/machine. TIA

Resolved! ML Server Unreachable

Hi Team, I have just installed the Latest Tool "Expedition". I am following the admin guide for reference. Once I logged to Tool and view the dashboard. Under "ML Health " section, I can error "ML server unreachable". Did somebody encounter this issue? Please help me get rid of that

mlhealtherror.JPG
SudhirK by L1 Bithead
  • 13829 Views
  • 4 replies
  • 0 Likes

Error trying to import device (Panorama) into Expedition

I add the first part of the information, but when I try to perform the authenication API it produces this error: Unexpected content in server response. Revise you are connecting to a Palo Alto Networks Device OK I have tried another expedition VM to pull my panorama in and the same error. I used the API to get the ke...

Is there a way to run the Migration Tool on Windows?

Long story short, we purchased a Palo Alto 3260 to replace our ASA 5585. I'm looking into the best method, and easiest method to transition from our old device to the Palo. This tool looks like it would be a great option, but we do not have an Ubuntu server to use. We also cannot install an Ubuntu server, as that was already denied when asked. ...

sebolj by L1 Bithead
  • 7541 Views
  • 4 replies
  • 0 Likes

Migration BGP from SRX

I have to migration BGP configure from Juniper SRX to Paloalto but I don't know parameter meaning. How I config it on Paloalto Configure on Juniper is. Policy On BL JJJ egress mark BGP community for XXX-NEP and YYY-NEP. Match condition by IP prefix: IP from XXX-SEC set community = 65349:21120 IP from YYY-SEC set community = 65349:21020 ...

Resolved! Updating Expedition VM beyond 1.1.57.1

My Expedition VM is currently running version 1.1.57.1. I happened to notice from the Expedition release notes that there are hot fixes up to version 1.1.79.1. I attempted the regular Expedition VM update and it didn't seem to get me anywhere. I've included the output when I attempt to update Expedition below. I couldn't locate any documenta...

DelvinC by L2 Linker
  • 6789 Views
  • 4 replies
  • 0 Likes

Panorama to Panorama Deployment

We are deploying multiple VM series Panorama instances with fairly similar base configs in different environments. Can we use Expedition to import a backup from an existing system, change the values of unique to a new environment(IP's, hostname,routes, etc), export from Expedition, than import it in the new Panorama?

jhampton by L1 Bithead
  • 2720 Views
  • 1 replies
  • 0 Likes

Migration

Hi, I want to migrate configuration from fortinet to palo alto ,can you let me know the procedure ahead.

Swetang by L1 Bithead
  • 3892 Views
  • 3 replies
  • 0 Likes

Check Point R80+ policy auto-zoning on import partially works

Currently working on migration from CP R80.20 to PA 9.0.X. and having issues with auto-zoning during the import process using the show policy package java app method. Only the Application Layer section of the Security policy has auto-zoning applied. The Network Layer has no Zones applied. Interfaces and Zones are created correctly from netstat ...

benlewis by L2 Linker
  • 5925 Views
  • 5 replies
  • 0 Likes

Resolved! Expedition Stuck at Phase 9 of 10

Migrating a Checkpoint R8.3 and having issues getting stuck at Phase 9 of 10 Calulating Security Rules Zones based on NAT rules, static Routes and Interfaces. If I do not include the routes everything works fine. I have verfied the netstat -nr is correct.

  • 1185 Posts
  • 89 Subscriptions
Labels