Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4842 Views
  • 0 replies
  • 0 Likes

PAN M-200 license

Hello, Our customer has a pair of M-200 (with license Panorama 25 devices) running in HA. This product was EoS in 15/4/2024 Now the customer want to buy a new license of Panorama with 100 devices so is this license EoS too or just the hardware EoS?

dungnt by L0 Member
  • 1075 Views
  • 1 replies
  • 0 Likes

Does Vmware vcenter plugin (Panorama) version 2.0.0 support VMware 8.0.U3?

Hello! Do you know whether Vmware vcenter plugin (Panorama) version 2.0.0 support VMware 8.0.U3? There´s not documentation confirming this. I would assume it does as the plugin 2.0.0 requires minimum Pan-OS 10.2.8 and this release supports esxi 8.0 https://docs.paloaltonetworks.com/compatibility-matrix/panorama/panorama-hypervisor-support An...

Carracido by L4 Transporter
  • 872 Views
  • 0 replies
  • 0 Likes

Panorama - Template imports cert for management a then push to firewall - Config Management MGT SSL/TLS GUI

Panorama - Template imports cert for management a then push to firewall - Config Management MGT SSL/TLS GUI Hello good afternoon, as always thank you very much for the constant support, collaboration and for the time you take to respond. I have the following question regarding Panorama and certificates. I have the following sce...

Metgatz by L4 Transporter
  • 3603 Views
  • 2 replies
  • 0 Likes

Migrating Configuration from Panorama/PA-3220 (PAN-OS 9.1.6) to New Panorama/PA-1410 (PAN-OS 11.1.2-h3)

Hi all, I'm planning to replace my existing Panorama VM and PA-3220 firewall (both running PAN-OS 9.1.6) with a new Panorama VM and PA-1410 (running PAN-OS 11.1.2-h3). My goal is to migrate the existing configuration to the new setup, primarily focusing on the PA-1410, and eventually decommission the PA-3220 without connecting it to the new Pa...

Panorama HA1 connection daily flips because of buffer space

Hello, I have a case with TAC regarding this issue for 4 months now so I figured I would try my luck here. My issue is a HA split-brain problem between Panorama Active and Passive appliances in 2 different physical locations. The issue is that HA1 breaks for 1 second briefly because: health-check fails -> ICMP packets are not sent from ...

Resolved! Vulnerability Assessment against Panorama found two vulnerability

Hi Support, Recently we have Vulnerability Assessment and found two vulnerability on Panorama 1. “The remote HTTPS server is not enforcing HTTP Strict Transport Security (HSTS) on Port 284432.“SSL Certificate Cannot Be Trusted” for port 28270.How can we remediate on both vulnerability above? Any advise and solution much appreciated Thank y...

How does Ansible panos_security_rule module work with device_group parameter?

I am trying to gather all the security rules for the specific device_group. Here is my playbook/YAML file: - name: Get all security rules fromt the Panorama paloaltonetworks.panos.panos_security_rule: provider: ip_address: "{{ panorama_host }}" api_key: "{{ netops_api_key }}" device_group: "shared" gathered_filter: "*" state: gathered registe...

ynorvo by L0 Member
  • 943 Views
  • 0 replies
  • 0 Likes

Getting system alert-high for Wildfire update failure, failed to extract file

This is occurring on our Panorama. Content of email alert is: Type: SYSTEMSubtype: generalTime: Apr 07 2022 00:12:55 GMTSeverity: highDetails: "Failed to extract file panupv3-all-wildfire-652605-655839.tgz with sha256: 647eedc7698709983f5e9d99dc0428cac00b16aef603a703b4e8572f041411eb" Not sure how to proceed to resolve.

High Disk Space Usage on / root partition of Panorama

Hi All, We are experiencing high disk space usage on the root partition of Panorama. Critical alerts on Panorama is showing "Disk Usage for / exceeds limit, 100 percent in use, cleaning filesystem". Output of "show system files" is as follows: @panorama> show system files /opt/panlogs/cores/:total 0 /var/cores/:total 1.8Gdrwxr-xr-x 2 r...

Adding Firewall to Strata Cloud Manager

Hello all, I have a question about Strata Cloud Manager. Does a local firewall configuration import to Strata Cloud Manager when you onboard the firewall? Or is there a way to upload the xml file to the firewall after its managed by Strata Cloud Manager.

Forwarding system logs to log collector

Hello, Currently we have firewall sending Threat and TRAFFIC log types with CEF format to Sentinel workspace through Linux log collector with omsagent. We need to send the System log types as well from the firewall to the log collector and then in Sentinel. In order to do that we followed the steps in highlighted guide: Azure-Sentinel/Solution...

Prodan by L0 Member
  • 3095 Views
  • 2 replies
  • 0 Likes

Panorama and PANOS RADIUS Authentication Failing after upgrade to 10.2

Hello, Thought I would pass on this solution I found. After upgrading our Panorama from 10.1 to 10.2, our RADIUS authentication no longer worked. The root cause was our Microsoft RADIUS server was using TLS 1.0 for the PEAP-MSCHAP TLS handshake and 10.2 REQUIRES TLS 1.1. The solution is to add the following registry setting to your Microsof...

BKRogers by L1 Bithead
  • 2977 Views
  • 1 replies
  • 0 Likes

How can I provde M-200 System drive is normal

Dear Community, The customer has an SSD LED that is blue and flashing. And the document only provides HHD status was bule and have not any information about SSD. Cause I cannot find any documents to provide M-200 System device (SSD) is in normal status. M-200 Appliance Front Panel Description (paloaltonetworks.com) Replacement only prov...

SAML for external admin, local admin for internal admin

Hi, been racking my brain trying to figure this one out. Essentially, to comply with regional guidelines for our client, we are enforcing MFA for all administrative accounts on the Palo Altos, which are internet facing. I have implemented SAML authenticating with Azure AD with Microsoft Authenticator for 2FA, which is all fine and well, and I a...

  • 845 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Posts
Top Liked Authors