Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 5016 Views
  • 0 replies
  • 0 Likes

PALO ALTO 5020 migrate to 5220 from Panorama

HI,, we have plan to migrate PA 5020 to PA 5220 with 40G, Please anyone let me to best practices with less downtime migration. herewith mentioned that how current our environment setup has. 1. currently we have 3 PA Integrated with Panorama , 2. 5020 has 6 vsys 3.in that one of template (polices alone not NAT) share to 3 different PA (One ...

Panorama Upgrade from 9.1.12-h3 to 9.1.13-h3

I am trying to upgrade my Panorama from version 9.1.12-h3 to 9.1.13-h3. I download 9.1.13-h3 I install 9.1.13-h3 After reboot and I wait for logon service to be ready... I can get to the main HTTPS page and see my company branded logo and by custom message on the login page like normal. When I try to login with either my local admin account or m...

Import Device config into Panorama Missing Radius key

The firewall was removed from Panorama and trying to import device config into Panorama again to fully managed the firewall by Panorama. We have made sure that all shared objects and policies everything merged on local firewall. However the import device config commit failed on Panorama, throwing an error : devices -> localhost.localdomai...

SaaS Application Usage Report

From Panorama, we've always ran the SaaS Application Usage PDF report and was able to save the report as PDF. Since upgrading Panorama to 10.1, the report can no longer be saved as PDF. I can't find anywhere that shows this as a behavior change. Is anyone experiencing the same?

Firewall Logs to Qradar

I am trying to send logs from Panorama to Qradar. I have around 30 to 35 Palo alto firewalls in the network, all the firewalls are centrally managed by Panorama. I am receiving logs from firewalls to Panorama, but on Qradar I can only see Panorama logs. My client wants to see the logs from all the firewalls in the network on Qradar. Is there any...

GKumar by L0 Member
  • 5251 Views
  • 1 replies
  • 0 Likes

SDWAN Commit Failed

I upgraded to PAN-OS 10.2.0 on Panorama, and when I do a commit, I get a SD-WAN config validation confirmation, but the commit fails says initiate phase1 failed Anyone seen this? I have a ticket open, and been on hold for over an hour.

bschaper by L2 Linker
  • 4218 Views
  • 2 replies
  • 0 Likes

Resolved! 10.1 Panorama Registration Auth Key issues

I am posting this question, and answer, for the benefit of the community. The Registration Auth Keys are a ONE TIME authorization key that allows a FW/WF/Logger device to talk to Panorama. However, it appears that the order of configurations matters...and if the initial communication fails (for whatever reason) you must restart the pairing pr...

rolinger by L2 Linker
  • 7146 Views
  • 1 replies
  • 0 Likes

Resolved! Doubt about Panorama Template Stack and if the template is superimposed on the same local configuration

Hello, good morning, thank you very much for your collaboration. Here again waiting for your collaboration to solve some doubts about Panorama. In this case, in relation to the Template/Tempkate stack. For example, if I have locally configured the interfaces of a Palo Alto firewall and decide to use a template, a template that includes "...

Metgatz by L4 Transporter
  • 8515 Views
  • 5 replies
  • 0 Likes

Panorama Device Commit Failure 10.1.4-h4

I'm trying to import a production firewall into panorama and am getting a strange error when trying to do the first commit. I have seen someone else in the Paloaltonetworks subreddit list the exact same error on the same version. Both panorama and the PA440 are on 10.1.4-h4 1. I have imported the config 2. I have pushed the config bundle 3. W...

traylorm by L1 Bithead
  • 8388 Views
  • 1 replies
  • 0 Likes

Resolved! Migrate firewall to New Panorama and IPSEC VPN Preshared key is not migrating over with the config

I have migrate 4 firewalls from old panorama VM to new panorama VM and notice the preshared key for IPSEC is missing. My customer have lost their all IPSEC VPN preshared key is there any method I can migrate the firewall to new Panorama I can migrate with the Panorama. We are following below guide to migrate the panorama https://docs.paloalto...

JiaXiang by L4 Transporter
  • 3611 Views
  • 1 replies
  • 0 Likes

Commit issue after upgrade Panorama 9.1.13-h3

After upgrade panorama to 9.1.13-h3 version, I faced with some problems. ( 9.1.13-h3>preferred release) When Location Shared is selected when changes are made to the objects on the panorama, it does not commit to all related devices.In this version, when it is Shared, it automatically commits the location to all relevant branches without sele...

Master User-id device receives non-functioning configuration for userID Group Include list from Panorama

I have a User-Id configuration that has been working successfully for 6 months. I went to add a new group to the group include list, and the syntax that was written from Panorama had JUST the group name in this form :domain\group_name. The working groups as listed by running the 'show config merged | match group-include-list' all have a syntax...

  • 724 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors
Labels