Panorama<->Firewalls connectivity issue

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Panorama<->Firewalls connectivity issue

L1 Bithead

Hi all,

 

After I modify the route service and restore it to the state before the firewalls (2 HA firewalls  + PA220 ) are no longer connected to the panorama.

ayoubAitkhouya_0-1612712485559.png

 

No changes are made on the network side between the two.

Panorama : VM (VMware ESXi) version 8.1.17

Firewall: 2 HA FW version 8.1.17 and PA220 8.0.17
Changing the IP address of panorama in the firewalls and re-establishing it, as well as restarting did not solve the problem.

 

Thanks in advanced for any Help!

Regards

2 REPLIES 2

Cyber Elite
Cyber Elite

what exactly dd you change in the service route?

if you changed the service route, he first thing that can cause problems are security rules and possibly NAT being/not being applied

 

so look for blocked connections in your traffic log and verify if NAT is applied/not applied as expected

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

Hi Reaper, 

 

Once I change the service route in the firewall and restore it to default (through management) the firewall is no longer connected to the panorama.

I still believe if I change service route to  others and revert to the default, they will be disconnected from the panorama.

 

Best Regards,

  

  • 1626 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!