Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 5070 Views
  • 0 replies
  • 0 Likes

Cancel/undo/revert/delete some Local-overrides that were generated directly in the firewall

Hello good evening, again here bothering and looking for your collaboration for some questions about Panorama. I have the following doubt, I understand that Local Override is not the best practice and should be used only in particular cases. I have the following question: It is possible to simply override "some Local Overrides", I mean loc...

Metgatz by L4 Transporter
  • 9691 Views
  • 2 replies
  • 0 Likes

unable to see logs on panorama

Hello Guys, I've recently deployed a Panorama VM on azure. I have imported a firewall's config on the panorama. When I check in the managed devices summary section, the firewall looks connected and is ""In Sync" on the panorama. However, I can't see logs in the monitor section on the panorama. The Panorama is working in Panorama mode with loc...

Issue Updating Local Administrator Passwords via Panorama - Seeking Community Assistance

Greetings Community Members, I'm currently facing a challenge while attempting to update the local administrator passwords from Panorama and then pushing the changes to our firewalls. The process involves modifying the password by selecting a device template, select the administrators, and update the password. Subsequently, I commit the change...

Resolved! pan-os-python trying to pull list of security polices from panorama using a specific device group

# This defines how we will connect to panorama mypanorama = panorama.Panorama(device, api_key=auth_key) # This defines the device group we will be connecting to palo_device_group = panorama.DeviceGroup(devicegroup) mypanorama.add(palo_device_group) rulebase = PreRulebase palo_device_group.add(rulebase) existing_policies = SecurityRule.refreshal...

Import devices configuration into Panorama stucked at 99% since last 48 hours

We are import PA5220 firewall backup ( selecting import shared object) into Panorama VM , but stucked at 99% since last 48 hours. If we unselect import shared object , job is completing in minutes. But while selecting shared object option its taking time.There are 16000 objects in PA5220 firewall. What could be the reason for slowness in import...

Deepak_K by L3 Networker
  • 7170 Views
  • 6 replies
  • 1 Likes

Resolved! TAP or Vitual Wire interface?

Which interface type allows you to control traffic with the least disruption to a network? As per the Palo Alto Networks Study guide its saying as Virutal Wire, where as when searched in Chat GPT and web its showing as TAP. Can someone suggest which one is the correct answer? Web Image: As per Palo Alto Study Guide:Domain 6: Thank you.

RSJ_141027_0-1704352439403.png
RSJ_141027_1-1704352469337.png

Generate certificates in templates with cli

Hi everyone, i know that i can generate certificates on the panorama itself with the command: request certificate generate ca no signed-by myCA digest sha512 days-till-expiry 365 countrycode DE organization "My Org" hostname [ hostname hostname.mydomain ] name hostname.mydomain certificate-name myCert algorithm RSA rsa-nbits 4096 but as th...

Resolved! Adding new devices to Panorama

Hi I need to add new pair of devices (PA 3220) as HA active/passive mode which will be replacing the existing PA 3060 HA cluster which is in production. I am going to use the same device group, but I would like to rename the template and utilize the same parameters as the original. I was thinking about cloning the template and pushing that to ...

Amin2 by L2 Linker
  • 4379 Views
  • 2 replies
  • 0 Likes

Rejoin a factory default PA firewall to HA which managed by Panorama

Hi all I have a HA PA pair which managed by Panorama in our environment, and we found the passive one is unable to login locally, and cannot commit new configuration to the passive one thru Panorama. So we do factory default of the passive one and configure the management IP and admin user again. After we do factory default, we joined the HA...

alex by L0 Member
  • 1830 Views
  • 1 replies
  • 0 Likes

Green Horizontal Bar in PanOS 10.1 GUI

I just started noticing this horizontal green bar appearing between the yellow and blue fields on the header in PanOS 10.1. Does this mean anything? It's not present all the time. The red dot in the screenshot was accidentally painted on by the snipping tool.

PanoramaGreen.PNG

Panorama HA Two different Data Center

Dear Folks, I want to setup Panorma High availability between two different data centers [Netherland-Germany] I have checked the latecny is allowed upto 1000 ms. I have some following doubts. 1. since these DC's running different Ip address spce so for HA communication between these peers have two different Ip address, is not an constrains?...

  • 728 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors
Labels