Expedition Discussions
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Expedition Discussions

Discussions

Resolved! ML gets stuck at "Pending"

I started by running the command

scp export log traffic start-time equal 2018/07/30@00:00:00 end-time equal 2018/07/30@23:45:00 to expedition@172.30.200.117:/PALogs/mltest.csv

on my PA220. 

 

root@Expedition:/PALogs# ls -l
total 64296
-rw-rw-r-- 1 expe

...

Untitled.png
mbowling by L1 Bithead
  • 35620 Views
  • 26 replies
  • 3 Likes

If You Need an OVA...

I created an OVA for my team and put it up here (Note, this isn't the official release now offered by PANW):

https://drive.google.com/open?id=1Z9GrCF8I_BZzpbEmEh6G75npo05_4G0c

 

Be sure to go Settings > M. Learning > and change the Expedition ML Addr

...

trice by L1 Bithead
  • 54282 Views
  • 45 replies
  • 22 Likes

Resolved! How to Upload configuration files bigger than 2MB

Expedition uses APACHE as a web server and PHP as module for the scripts. By default PHP allow users to upload files with a maximum size of 2M, this can be updated by changing the PHP.ini

 

sudo vi /etc/php/7.0/apache2/php.ini go to line where this ...

alestevez by L7 Applicator
  • 24254 Views
  • 5 replies
  • 11 Likes

Invisible 'merged' tag on export

When I am importing the XML from Expedition it has started to give me errors due to a tag that is present on merged objects. The tag is 'merged' and you can see it in Panorama in the tag column but when you open the object nothing is in that field. D

...

aporue by L3 Networker
  • 2142 Views
  • 1 replies
  • 0 Likes

CSV import: format of NAT policy?

I am migrating from a Clavister firewall. Configuration  is in XML format, which I am converting to CSV.

 

Everything but NAT works OK, but I have not been able to find a description of how to format the fields for TP to get the desired result.

 

Can

...

update servers required by expedition apt-get

What servers or their URLs are required by expedition apt-get.

We've whitelisted  *.paloaltonetworks.com.

We're asking because we se following:

Install these packages without verification? [y/N] y Get:1 https://conversionupdates.paloaltonetworks.com ...

Screen Shot 2019-05-07 at 08.33.56.jpg
Laimonas by L2 Linker
  • 4544 Views
  • 4 replies
  • 0 Likes

load config partial mode append issue

I am trying to do a ‘load config partial mode append’ to get the policy exported from Expedition into a device-group that already has policy/nat rules (those rules are from a previous Expedition project, and we are trying to combine 2 ASA contexts in

...

aporue by L3 Networker
  • 2379 Views
  • 1 replies
  • 0 Likes

Rule merge all results

I am running Expedition 1.0.106 and have a question about merging rules. Once the analysis is done I am presented with cases that I look at individually. From there I can merge by highlighting the rules or by clicking on the 'merge by selection or al

...

aporue by L3 Networker
  • 12120 Views
  • 34 replies
  • 0 Likes

Import Interface Issue

I have a weird issue when I import the XLM into the firewalls and wanted to see if anyone has any thoughts on it. I am importing the interface configurations from Cisco ASA's into templates in Panorama that were migration in Expedition. The import in

...

CommitError.PNG
aporue by L3 Networker
  • 3122 Views
  • 4 replies
  • 0 Likes

load config partial mode append issue

I am trying to combine 2 ASA contexts into a single PA config. Used Expedition to do the migration separately for each context and everything but the rules worked as expected. Normally I use 'load config partial mode merge' which also worked in this

...

aporue by L3 Networker
  • 1834 Views
  • 0 replies
  • 0 Likes

Invalid FQDN Object on import

When importing panorama we have two fqdn address objects that are detected as invalid:

EXT-SaS-Monitoring_02ws.centrastage.net fqdn 02ws.centrastage.net

EXT-SaS-Monitoring_02cc.centrastage.net fqdn 02cc.centrastage.net

 

All objects with a number as

...

Resolved! Converting XML from firewall to Panorama template

Hi,

 

I assume this question has been previously discussed, however I wasn't able to find a thread that describes the process.

 

I am looking to import an .xml file from a palo alto firewall and use expedition to convert the config into a device grou

...

Resolved! Can we export certain objects via a XML file

Hello !

 

On MT we can export our objects (addresses, groups, policies, etc.) to excel. So I was wondering : can we do the same but instead of an excel file we export the objects in a XML file ?

 

For now the only two ways to export something in a XM

...

OverPass by L0 Member
  • 4322 Views
  • 2 replies
  • 0 Likes

Failed to parse security policy

Dears

 

I'm migrating from Cisco ASA to paloalto 3220, I migrated all configuration successfully but I faced the following error

 

Details
vsys1
Error: Number of security rules (8721) exceeds vsys capacity (2500)
Error: Failed to parse security policy
(M

...

  • 1111 Posts
  • 76 Subscriptions
Top Solution Authors
Labels