02-28-2017 06:46 AM - edited 02-28-2017 07:06 AM
Hi
We are upgrading to 8.0 and have noticed the cavet about new log storage in 8.0. We do not have log collectors setup, but are collecting logs in Panorama (threat and traffic only) and wonder if the existing log migration applies to these as well?
Thanks in advance for any advice,
Rebecca
03-29-2017 01:24 PM
@RSporbert Rebecca,
Even though you do not have a seperate log collector in Panorama, you will have a built in log collector by default, otherwise Panorama would not be able to access the logs from the Palo Alto Networks devices sending the logs to Panorama.
Because PAN-OS 8.0 uses a new format, the logs will need to be converted to the new format to work properly and run reports.
For instructions on how to accomplish this, please see this page:
Upgrade Firewalls Using Panorama
I hope this answers your question.
03-29-2017 01:24 PM
@RSporbert Rebecca,
Even though you do not have a seperate log collector in Panorama, you will have a built in log collector by default, otherwise Panorama would not be able to access the logs from the Palo Alto Networks devices sending the logs to Panorama.
Because PAN-OS 8.0 uses a new format, the logs will need to be converted to the new format to work properly and run reports.
For instructions on how to accomplish this, please see this page:
Upgrade Firewalls Using Panorama
I hope this answers your question.
03-31-2017 01:02 AM
Thank you jdelio, upgraded successfully and all good.
04-26-2017 02:44 AM - edited 04-26-2017 03:07 AM
Hi Joe @jdelio,
We have a panorama(VM) with 2x M-100 log collectors, to upgrade to 8.0, here is my plan,
1. Upgrade both Panorama and log collectors to 8.0, confirm they are working, e.g. new logs are showing fine.
2. Start the old log migration with the following command.
PA>request logdb migrate lc serial-number<serial_number> start
My question is on the 2nd step, where do I run this command from, is it from Panorama or LC? If it's panorama, I guess the serial_number is one of the log collectors?
Thanks, Fengrui
04-26-2017 10:14 AM
That second command would be ran on Panorama CLI. More specifically, it would be ran on the Log Collector.
If you do not have a seperate log collector, then you would just be on Panorama CLI directly to run this command.
I hope this makes sense.
For more information about upgrading to PAN-OS 8.0, please see this link:
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!