Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4910 Views
  • 0 replies
  • 0 Likes

Security Profile/ URL Filter enable but web site bypass blocking

Hi Platform: PA-440 SW Version: 10.1.8 I created policy and I enabled Actions/Profile settings/URL Filter with customized one, it locks adult content. 1st attempt website like chaturbate.com doesn't lock, in Monitor/URL filter appear blocked but I can browse the web site. 2nd attempt I create an URL filter category with specific web site and i...

How to dissociated Local and Global rule

Hello, I want to know a way to dissociated global rule and local rule, in order to change local rule on a firewall to global rule on the panorama. We think about tagging global rules and make an export of rules without this tag on the Panorama, but I want to know if there is an other way to do it. Thank for your help

Boya by L1 Bithead
  • 1303 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama Log Collector VM Cluster in 'Yellow' Status.

We had some issues with licensing for one of the nodes. We have since rectified this issue (switching to Panorama mode changed serial, licensed and changed back to logger mode). On initial bootup Panorama was reporting log collectors connected and in config sync. However there was a message around 'inter-lc-connectivity' not working. We reboot...

Paul_Stinson_0-1694584415313.png

Panorama XML API Export Device State not generated, resulting error response"Device parameter needed' Instead

Hello everyone, we tried to create a script to export the device-state of all devices (Firewall, Panorama).The API request is https://<device-ip>/api/?type=export&category=device-state. When we tried the request on firewall it generate the .tgz file which is expected, but when we run it on the Panorama Device it resulted the XML respon...

Wishnumurti_0-1707292475814.png
Wishnumurti_1-1707292491984.png

ikev2 site to site VPN to sites with multiple public ip addresses(used for failover)

for a client, i created these many tunnel interfaces for each of their sites. Now, for all these sites, they have 2-3 public ip addresses(for failover purposes). So, will i have to create new tunnel interfaces or should I just create new Ike gateways and ipsec tunnels and point them to the tunnels which I created earlier(shown on the screenshot ...

msdphi_0-1707168908909.png
msdphi by L2 Linker
  • 3322 Views
  • 6 replies
  • 0 Likes

Settings from global-template stack not showing on local pan-template but are showing in the template-stack.

I have configured a global-template on Panorama and added some settings to it such as Netflow, SMTP, SNMP and what have you. I have a template for the local pan called pan-template and a template-stack that contains both global and pan-template with pan-template at the top. The problem I am having is settings from global-template are not showi...

drewdown by L4 Transporter
  • 3263 Views
  • 3 replies
  • 0 Likes

Resolved! reading ARP table on Panorama

Hi,Panorama doesn't have "show arp" command.And there isn't arp information in the tech-support.Can we read ARP table on Panorama?Regards,Tomoyuki Komure

komure by Not applicable
  • 17210 Views
  • 4 replies
  • 0 Likes

Unable to view Panorama Advisory to check for expired certificates remediation.

Currently we use PA-VM and while I have checked Device Management --> Certificates, I am unable to find the Panorama Certificate mentioned in the email alert. The Panorama certificate for managing NGFWs and Log Collectors will expire on April 7, 2024. Please review the advisory at https://live.paloaltonetworks.com/t5/customer-advisories/ad...

Local VMWorkStation Panorma not synching with Local PA-415 Firewall

Hello All, I am running a #paloalto #PA415 at home on my network. Over the last week I installed Panorama onto a #WMWorkstation. The #PA415 has been in my house for 1 year now and the Panorama has been installed for about 1 week. As this is a home network, their both configured with a local 192.x.x.x address. The #PA415 has a self signed certifi...

J.Patel by L1 Bithead
  • 1519 Views
  • 0 replies
  • 0 Likes

Panorama Eval license issue

Hi there, I've just built a Palo Alto lab in my EVE-NG server (Panorama with 4 PAs FW using KVM VM-100 images) and I've applied Eval licenses on all them and all the licenses have been accepted and updated when I check the license status. However, when I tried to add the PA devices int Panorama, I got this message " S/N is invalid .Maximum nu...

AK74 by L2 Linker
  • 3335 Views
  • 2 replies
  • 0 Likes

Cancel/undo/revert/delete some Local-overrides that were generated directly in the firewall

Hello good evening, again here bothering and looking for your collaboration for some questions about Panorama. I have the following doubt, I understand that Local Override is not the best practice and should be used only in particular cases. I have the following question: It is possible to simply override "some Local Overrides", I mean loc...

Metgatz by L4 Transporter
  • 9271 Views
  • 2 replies
  • 0 Likes

unable to see logs on panorama

Hello Guys, I've recently deployed a Panorama VM on azure. I have imported a firewall's config on the panorama. When I check in the managed devices summary section, the firewall looks connected and is ""In Sync" on the panorama. However, I can't see logs in the monitor section on the panorama. The Panorama is working in Panorama mode with loc...

SSL-VPN High Availability

Hello, we have panorama mange 15 device, and have global protect license for 3 devices, we need to configure HA to connect to any portal of them with some criteria (as AD group go to specific device, admin go to another and etc ....... ) can any one support me with doc or tutorial to do this #SSL-VPN #high-availability

mhmad_91 by L0 Member
  • 1055 Views
  • 0 replies
  • 0 Likes

Resolved! Azure Cloud Panorama VM Instance License (BYOL) Requirement

We have a plan to get a panorama vm instance on the azure cloud. I was going through the docs, Azure portal says BYOL. Not sure what are the license feature we need to purchase from Palo Alto for managing less than 50 firewalls? Did anyone here has implemented Azure based panorama (BYOL)? Your guidance will be highly appreciated. In our environm...

tthapa23 by L2 Linker
  • 2139 Views
  • 0 replies
  • 0 Likes
  • 853 Posts
  • 47 Subscriptions
Top Liked Authors