Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4919 Views
  • 0 replies
  • 0 Likes

Resolved! Rogue shared Objects following import - Panorama 10.2.4

We are in the process of importing our locally managed firewalls (PA-440s) into our panorama instance. We've got to the point where were have imported all the devices and committed to panorama. We were about to push the device config bundles back to the devices but then realised some unexpected "shared objects" had been created in Panorama and s...

jbusby by L1 Bithead
  • 6474 Views
  • 6 replies
  • 0 Likes

Template stack is partial empty???

Hello, I've got strange behaviour of tamplates and template stack in Panorama. When I configure User Identification - PA Network User-ID Agent, tose settings are not visible unde template stack. Setting on this same tab - Server Monitoring and Include/Exclude Networks are visible in template and can be push to devices. Template, red marked visi...

MarKra_1-1668084614595.png
MarKra_2-1668084697838.png
MarKra_3-1668084800855.png
MarKra by L1 Bithead
  • 4228 Views
  • 6 replies
  • 0 Likes

Upgrade Panorama Software NFGW

Hi All, Do you know where to find the knowledgebased to upgrade Panorama Software NGFW AWS mode (from 9.1 to 10.2).It seems like I cannot find the KB. Is it just the same procedure like upgrading the Panorama (Hardware)?From what I understand, I need to upgrade the AWS plugin version (at least 4.0), check the VM system requirement (at least have...

Momoj by L2 Linker
  • 2041 Views
  • 2 replies
  • 0 Likes

Remote site management to be managed with Panorama?

I'm looking at deploying some PAN-440 firewalls and wanted to get some advice as this is one of the first remote sites I've done with Palo. My intention was to build an IPSEC bridge between the remote site and our on-prem firewalls in order to pipe all of the remote site's traffic to us. That would allow us to control internet access and use o...

jsalmans by L4 Transporter
  • 1598 Views
  • 0 replies
  • 0 Likes

Resolved! GlobalProtect Update Transparent

We would like to upgrade the GlobalProtect clients to our Security team's recommended version. Before, when we did the upgrade it was via SCCM. Now, we plan to upgrade the clients by pushing the update transparently. So, in preparation for the upgrade we would need to change Allow User to Upgrade GlobalProtect App for all users to Disallow and...

jesteves by L0 Member
  • 2869 Views
  • 1 replies
  • 0 Likes

In shared location created Log-Forwarding profile, which is not displaying in the security policy of a particular device group.

Hi team, I built a device group hierarchy for a Customer to maintain some shared objects. In all the locations, the common log-forwarding profile is showing, except in QJP-PA-FW PA-FW But when I tried to push from the cli in set commands it accepted without any error and the commit was also successful in the panorama. -------------------...

AkashThangavel_0-1690363865031.png
AkashThangavel_1-1690363865031.png
AkashThangavel_2-1690363865205.png
AkashThangavel_3-1690363865033.png

Manage FW policies with Terraform

Hi We use Panorama to apply Firewall Policies on VM series firewall deployed in AWS. Is there a way to securely apply the FW policies with Infra-as-Code/ policy-as-code via a PR process? VM-Series Panorama

user2298 by L0 Member
  • 1330 Views
  • 1 replies
  • 0 Likes

PANOS Secure SDWAN Realtime Metrics

I'm doing a Secure SDWAN PoC with a customer this month and they asked if Panorama offered the ability to pull/poll realtime metrics related to SDWAN performance. My first thought is you can pull standard SNMP metrics from any interface including the SDWAN interface. My second thought was using Netflow. But my question would be surrounding pul...

Impossible to commit: template values of parent template are present in template stack, but not pushed to the firewall

Hello my frustration level with panorama is reaching impossible levels so I really hope that someone can help me out. Unfortunately I made the mistake of purchasing Pano with partner support and I can't open a case directly with PAN, and vendor support is horrible. Long story short, Panorama is not pushing template values to newly added fire...

SomeSuch_3-1689239936510.png
SomeSuch_2-1689239906497.png
SomeSuch_0-1689239823375.png
SomeSuch_1-1689239867546.png
SomeSuch by L1 Bithead
  • 3157 Views
  • 2 replies
  • 0 Likes

Item added to URL Category in Panorama but not showing on individual devices

Hi! I have entered a new URL to whitelist in the correct URL category in Panorama (91 items showing in the category). I then committed and pushed but the new entry is not showing on any of my individual devices (90 items showing in the category). I cannot enter the item at the device level because the add button is grayed out. I am not sure...

Resolved! Panorama Serial Number Change (unable to) As log collector is using different Serial Number

Hi Community, I have this situation where I’m unable to change serial number on Panorama VM to upload license. The reason I am unable to change serial number via dashboard is because the Log collector configured locally is using a different serial number. I tried deleting the log collector, and log collector groups. then tried adding serial nu...

Carl2002 by L0 Member
  • 10980 Views
  • 3 replies
  • 0 Likes
  • 854 Posts
  • 47 Subscriptions
Top Liked Authors