- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-03-2019 02:50 PM
After importing Panorama into a Project the Dashboard show's the full number of security rules but when you go into the policies, select the Panorama xml config and try to vew "all" or for specific device-groups it displays "no data". Running v1.1.26, Although I was having this issue on v1.1.22 but left it alone while the web gui reload loop was being fixed.
07-03-2019 05:47 PM
I have the same issue, it worked until I upgraded to the latest version. The odd thing is when I choose the device group, nat rules and everything else shows up, but not security policies.
Weird, I am sure there will be an update to fix whatever was broken.
07-03-2019 09:47 PM
In prior versions if I had a Panorama connected dg I could see it in security policies. I can see nat and all of the other elements, but not policies. Occasionally when loading I will see a brief flash of the policies and then a blank screen. No weird errors in the logs.
I use Expedition for fifty or sixty ha pairs and selectively choose log export since most of our firewalls generate 15-50gb of logs per day. I don't see any form of resource constraint since our primary VM is in a server farm.
I loaded it on a vm at my house on a 1.1.24 and it works as expected. I can see the policies, so did I miss something in the release notes?
Anyhow, thanks for the help!
07-04-2019 08:46 AM
We are not seeing any policies at all, either selecting all or specific device group.
07-04-2019 01:38 PM
can you create a new project, import the panorama config again and let me know if you are ablew to see the policies in the new project?
i'm trying to narrow the issue to a global issue with your Expedition or something that may be specific to the project.
07-04-2019 01:56 PM
I have removed all devices and projects about fifteen times on the current release and the policies don't show up. If I manually enter a non-Panorama firewall it works. I have tried with about twenty different Panorama managed dg's, none of them show up. I have expanded the dg's and imported them and the Panorama dg's do not show polices, but nat, pbf, and all other objects show up.
07-04-2019 02:02 PM
Also have done the same process as @kenvizena countless times with similar results, although even if an individual Firewall is imported the policy still doesn't show for a specifc vsys. As a test iimported the Panorama xml into a test Expedition VM running v1.1.23 and the policies were displaying as expected. For various reasons I can't transfer the ~80GB of traffic logs to this test VM in order to run ML and produce a Greenfield Policy. Hopefully we can get this working again in current versions...
07-04-2019 10:48 PM
@kenvizena can you export project file and email to fwmigrate @ paloaltonetworks.com for debugging.
07-05-2019 01:34 AM
Yep, I will do it in the morning.
Thanks for the help!
02-16-2023 05:10 AM
Is there somewhere a solution written?
02-16-2023 09:04 AM
Hi @EikeChristian Solution will be upgrade your expedition to the latest version 1.2.51
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!