Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 5067 Views
  • 0 replies
  • 0 Likes

Hide/show local configuration objects

Was running 9.1 on all firewalls. 10.0 on Panorama. Then something stupid happened and couldn't sync my HA pairs. I was forced to upgrade everything to 10.1.5. In the name of all that's stupid, on my local firewalls, when I log in, it shows me both the locally configured ipsec tunnel and the panorama configured tunnel object (the green gear)...

treysgrun_0-1654902933046.png

How to onboard palo in to panorama

Hi Team, Our palo already onboarded in to the panorama. Due to some reason our L3 team disabled panorama setting in the palo. Now we need to re-add in to the panorama. Please tell me how need to do? 1. Palo we need to enable pano setting only enough 2. or we need to import the config in the panorama as well ?

rbabu0 by L1 Bithead
  • 3506 Views
  • 1 replies
  • 0 Likes

Panorama Collector Log Forwarding not working

I noticed an issue with this feature before when I tried to set up an outgoing email on the Correlated Events log settings in the Panorama built-in collector group. My idea was to filter to certain networks and then send an email when a correlated event came in that matched the filter so that a ticket could be created and our desktop services f...

jsalmans by L4 Transporter
  • 3099 Views
  • 1 replies
  • 0 Likes

Resolved! Importing and Managing Shared Gateway in Panorama

Does Panorama support managing shared-gateways? I found one unanswered post on it, but I haven't found a conclusive statement on it in the official documentation. I recently tried to import a firewall into Panorama, but sg1 didn't seem to import with the rest of the vsys(s).

question about panorama and proxy server

Hi,Bro The customer's network environment does not have direct access to the Internet, but wants panorama to update the contents and software of the managed firewall device through a proxy server. So the proxy server is configured to allow access to updates.paloaltoneytworks.com. We found that only updates.paloaltoneytworks.com is released on th...

Resolved! Service object injected from Panorama, local view on firewall says destination port [ object Object ].

Service object injected from Panorama, local view on firewall says destination port [ object Object ]. Thank you very much as always. Can you support and help me by confirming if this is completely normal behavior. I have a Panorama and I am injecting a new service to two firewalls in HA that share the same Template/Template Stack. Well ...

Destination_Port.png
2022-07-10 18_00_22-PA-VM.png
from_panorama.png
Metgatz by L4 Transporter
  • 4047 Views
  • 4 replies
  • 0 Likes

Panorama - Force Template Value Option

Hello good evening: As always, thank you very much for the support, collaboration, support and help. I have the following important question regarding a PANORAMA function, in relation to the "Forced Template Values" option.According to the documentation, this option performs the following function:Merge with Cadidate Config = Option to merge t...

Metgatz by L4 Transporter
  • 17564 Views
  • 1 replies
  • 0 Likes

Panorama 10.1.6 wants to push keys and secret every time

Hi all, I want to upgrade my Panorama, 220s and 3220s from 10.0.10 to 10.1.6. I started upgrading Panorama and a 3220 HA Active Passive Pair to 10.1.6 No issues during update. When I want to push config to devices, I notice that the 3220s are shown "in sync", but when I go to the diffs, it always wants to push modified keys and secrets: IPSec Tu...

DVB_Bank by L1 Bithead
  • 2171 Views
  • 1 replies
  • 0 Likes

Panorama Template Push to Firewall always fails, unless you push Device Group at the same time

Panorama - VM ESXi - Panorama mode - version 10.1.4 When Panorama Template Push to Firewall always this always fails, reports out of sync and when you log directly to the firewall you do not see the changes. When you push Device Group and the Template from Panorama to the firewalls, the Template changes are successfully. The options enabl...

CarlUK by L0 Member
  • 4480 Views
  • 2 replies
  • 0 Likes

Resolved! Duplicate config in panorama managed firewall

Hi Team, In my firewall i can 2 configuration at the same time. One i pushed from panorama and one is local that is scyronized from the passive peer. i can see everything is duplicate. How can i remove the duplicate config ( Local config from the firewall and keep the panorama pushed only. Thanks in advance

Panorama template section is empty : No interfaces, no zones

Hello team, I have 2 firewalls managed in my panorama. When I go to template section on Panorama I can not see anything, any interfaces, zones so it's not possible to make any change from the Panorama. I have to make changes directely on the firewall. Do you know how can I fix out this issue ? Kind regards

Mamoudou by L2 Linker
  • 3292 Views
  • 2 replies
  • 0 Likes

Bulk add existing addresses to an existing group

Hello,I'm hoping someone can help out. I've just finished a merge from an ASA to Palo Alto through Expedition. The ASA had 3000+ addresses as part of an existing address group. I've tried multiple times to merge, and push the changes through the API, but it would appear all the addresses don't show up in the group.I guess what I'm asking, is ...

clwilson by L0 Member
  • 2254 Views
  • 1 replies
  • 0 Likes
  • 728 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors
Labels