Unused rules

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Unused rules

L0 Member

I know it is possible to get unused rules since last reboot, but it is obvious the data is in Panorama.  Is there no way to get a list of rules not used since a specified date?

 

https://live.paloaltonetworks.com/t5/Learning-Articles/How-to-Identify-Unused-Policies-on-a-Palo-Alt...

 

4 REPLIES 4

Cyber Elite
Cyber Elite

It's an all or nothing feature. If the rule has been hit since last reboot then it isn't going to be shown as unused. I know that there is a manual way to reset this without actually restarting the thing, I can't think of it at the moment. 

Community Team Member

Hi @SSaady,

 

How about using the ACC feature ?

Add the rule usage widget and specify a custom timeframe ... any rule not showing up in the report is unused.

 

ACC Rule UsageACC Rule Usage

 

I hope this works for you.

 

Cheers,

-Kiwi

 

LIVEcommunity team member, CISSP
Cheers,
Kiwi
Please help out other users and “Accept as Solution” if a post helps solve your problem !

Read more about how and why to accept solutions.

Love the new ACC lots of good stuff under the hood.

Steve Puluka BSEET - IP Architect - DQE Communications (Metro Ethernet/ISP)
ACE PanOS 6; ACE PanOS 7; ASE 3.0; PSE 7.0 Foundations & Associate in Platform; Cyber Security; Data Center

I have a rule that shows unused in the ACC and on the traffic monitor but when I choose to highlight unused rules it show used and this was before and  after a reboot

  • 3226 Views
  • 4 replies
  • 1 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!