10-09-2018 12:18 PM
I used expedition to provide me with information. I manually added rules to the firewall. When I go back to expedition and re-import the device config, it still shows me all of the same old rules. I tried re-importing under devices and from within the project. I also deleted and recreated the project with the same result. How do I refresh the policy?
10-10-2018 02:43 AM
Have you gone, outside of a project, to devices -> choose your device -> contents -> "retrieve contents" & save first?
10-10-2018 11:45 AM
Yes. It is Panorama managed, so I retrieved contents on Pano, retrieved devices, and then even retrieved contents on those devices (even though it should be almost nothing). I then did the import in the project. Same result.
10-10-2018 03:26 PM
Then AFAIK you need to base your project on the Panorama config (and import the panorama configuration), not the firewall configuration. The Panorama pushed policies are not present in the firewalls running-config.xml or candidate config either, so it's logical the expedition tool can't retrieve them either. Vice versa, you will push your changes using API calls to Panorama and from Panorama to the device.
10-11-2018 08:02 AM
"you need to base your project on the Panorama config (and import the panorama configuration), not the firewall configuration."
This is what I am doing. I have not had this problem previously.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!