Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4874 Views
  • 0 replies
  • 0 Likes

Resolved! Does thePAN 11.1.13 on panorama will work on local FW that is using 10.1.13-hr?

I just noticed our senior engr upgraded our PANORAMA legacy from 10.1.13hr to 11.1.13. Currently our local firewalls are still on 10.1.13-h3 and when I made changes I was having an error. When I check the commit failed it doesn't give me explanation on which path causing the problem. As per my manager I need to wait for all the FW to be upgrad...

weezy by L3 Networker
  • 2079 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama reports not available since the upgrade

Hi All, We are facing one issue for the last few months, we have no reports available since we have upgraded Panorama 11.0.4 --> 11.2.4-h7. So if we go Monitor | Reports menu we cannot select the date after our last upgrade. All the dates after the upgrade are grayed out and if you hover with the mouse, I got this info: "This date is after th...

grayed out dates1.png
Pre-defined reports unchecked.png

PA-450R ethernet port

The PA-450R will not sense a port is active unless all 8 pins of the RJ45 are wired. I discovered this after connecting an AT&T fiber link (RJ45 at Demarc)using 802.1Q sub-interface. The Cisco 1921 router was connecting within seconds. It was pinned with the necessary 1 - 3 and 6 for ethernet traffic. I discussed this with support and they s...

Resolved! Log Collector Redundancy

I have a client with a Panorama HA Pair that spans facilities via DWDM. It's fast enough (sub 10ms) to run an LCG that spans both DCs, but this is still poor design as it effectively halves the MTBF (you're now dependent on both members of a 2-node cluster to be operational thanks to the Elasticsearch quorum). So we run 2 independent LCGs to i...

mb_nexon by L1 Bithead
  • 2800 Views
  • 3 replies
  • 0 Likes

Panorama scheduled export path

Greetings, I am trying to schedule a backup to a Windows 2019 Datacenter scp server and having pathing issues.My SCP user defines a virtual root (e:\backup\SFTP\Panorama) but it doesn't seem to take.From the CLI I can do a backup without an issue using...scp export configuration from running-config.xml to panos.backup@<hostname>:/e:/back...

cloud services plugin update to 5.2.x

Hello, We run a Panorama VM 10.2.12-h2 software and cloud service plugin 5.1.0-h47. Seems 5.1 cloud plugin is being retired and need to update this by March 15th. It also looks like this version supports the recommended version update from Palo in 5.2.0-h69 or later versions. Are steps to update the plugin the same as updating the software...

Tuning Panorama HA Timers to Stop False HA1 Alerts over MPLS

Hello Community, I’m looking for some advice on tweaking our Panorama HA timers. We are seeing "false" failover alerts and want to ensure our plan to fix them is balanced correctly. Setup:Two Panoramas in an Active/Passive HA pair located in different Data Centers.Communication is over a WAN MPLS link.These manage two sets of firewalls (one set ...

Management IP address is getting changed

Hi All, Kindly help me troubleshoot the issue related to a Management IP address is getting changed automatically in Firewall. We have 2 devices are in active-passive mode and managed by Panorama. But somehow passive device Management IP is getting changed to active device IP automatically.

Resolved! Automatically choose REST API version

Hi, I've been using the REST API for some months (and I like it). The base url (e.g. "/restapi/v11.2") I set from a config file. I've been thinking about how to avoid this and use the XML API to lookup the current version (e.g. using "<show><upgrade-history/></show>" or "<show><system><info/></system>&lt...

T.Boess by L0 Member
  • 3006 Views
  • 1 replies
  • 0 Likes

Switch from Panorama Mode to Log Collector Mode Removes Logs?

I started with a Panorama (pan mode) VM 9.1.12-h3 and we only had a 200GB virtual logging disk (this was a throwback to when the system was originally built on PAN 4.6). We needed to add more logging space and wanted to add a 2TB virtual logging disk. A system limitation prevents you from adding an additional disk if the existing disk is less ...

Stiver by L0 Member
  • 5968 Views
  • 1 replies
  • 1 Likes

Panorama SDWAN

Hi I have list of branch firewall and hub firewall in the SDWAN group managed through the panorama if i removed one particular firewall from the SDWAN group will it lost it's connectivity on the panorama

Panorama integration with NSX Localmanager invebtory

Hi, I want to enable access to NSX local manager inventory so that I can use the vm objects in firewall policy based on the NSX tags assigned to those VM's. I do not want a VM-firewall in NSX I just want the object definitions to use on physical firewalls, is this possible? I can see the plugin seems to indicate I can create a connec...

Resolved! ChatGPT User-ID, AD and IP mapping issue

There is an issue with Palo Alto firewall which has to do with user IP mapping and AD. User is grated access via policy in the format source-user = corp\employee. After that's done, the user works fine today accessing ChatGPT but then the user is not able to use chatgpt the next day after working fine the day before. What is the problem? Any in...

  • 847 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors