07-19-2021 11:21 PM
We've a pair of firewalls (9.1.6) managed by the Panorama (9.1.6). We've Threat prevention license in place and client would like to install just the threats and not the apps by selecting disable the new apps in content update.
As recommended by the TAC, we've downloaded the latest version and when installing the new version, we select the disable new apps in content update on the firewalls. Then, similar procedure followed on the Panorama.
Once done, Panorama doesn't allow us to commit any changes to the firewalls prompting us with an error message that apps need to be enabled on the firewalls. We need to run the below commands to install the changes.
request set-application-status-recursive status enabled application (name) status enabled
We've shared TSF with the TAC. Am I missing something? Can someone please assist or correct me if I'm wrong.
Thanks in advance.
07-23-2021 10:09 PM
Thanks for the reply. We were getting a commit error when Pushing configuration from Panorama to the Firewalls. The error stated that "some apps were already in use and were invalid"
Does it because of the duplicate entries of disabling in both the Firewalls and Panorama? Or just disabling in firewalls would work?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!