VM firewalls can not join VM panorama all hosted in AWS cloud

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

VM firewalls can not join VM panorama all hosted in AWS cloud

L1 Bithead

Hello Team,

We are having an issue connecting palo-alto VM firewalls in AWS to the panorama hosted in AWS as well.

connectivity is successful between the firewall and panorama and we are using management port for this traffic.

we ran below command

show netstat all yes numeric-hosts yes numeric-ports yes | match IP

and found the state established on 3978.

when we read ms.log file, we see as below

SC3: failed to get SNI
 -0700 Warning:  sc3_get_current_sc3(sc3_utils.c:182): SC3: failed to get CCN

as per this seems like secure connection issue, but we performed sc3 reset procedure multiple times and also completely removed and re-added the firewall to panorama, but still not connecting.

Below is the complete error or ms.log file message we are seeing

 

has any body faced similar issue before where firewall is connecting to panorama in aws after performing all the required steps ?Here is ms/log file messageHere is ms/log file message

0 REPLIES 0
  • 131 Views
  • 0 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!