Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4878 Views
  • 0 replies
  • 0 Likes

Panorama Export error

Hi team, I have upgraded Panorama vm to 10.2.2 as per the preferred version list. But when I was trying to "Export Panorama and device congif bundle" Gui from operation tab Another tab in chrome got open in which it was showing error Error : " Failed to redirect error to /var/log/pan/appweb3-pan module.log (Permission denied) Attempt to redir...

Panorama can't show up traffic log

We have two panorama and HA. Today our active panorama was broken caused by VM datastore issue . Secondary Panorama taken active role , but We can't see any traffic log at the Monitor tab.

JeffKim by L2 Linker
  • 7067 Views
  • 7 replies
  • 0 Likes

Resolved! Setting up log collection in Panorama

Hi, Very new to Palo, just doing a PoC in AWS at the moment. I've got Panorama and 2 VM-100 firewalls deployed. Trying to get traffic logs from the firewalls into Panorama. I've used the two links below to configure it https://docs.paloaltonetworks.com/panorama/10-1/panorama-admin/manage-log-collection/log-collection-deployments/deploy-pan...

Panorama connectivity breaks after change to device template

Hello Community, We have a PA-440, running 10.1.3. We have registered the firewall earlier, the Panorama connectivity was fine, we have attached the device to template stacks etc. All looked good. However there was a need to add another template to the stack, and the new template had new values regarding panorama server settings, domain name e...

GPandi by L0 Member
  • 1701 Views
  • 0 replies
  • 0 Likes

How many log collectors can Panorama managed?

Hi Good day. Have some question wrt log collector. Does anyone know how many log collectors can a pair of HA Panorama manage? We have a customer who wants log collector to be distributed or the same location as the branch NGFW. They will be roughly 500+ branches and each with one unit of PA400 series. They want to have a dedicated log collect...

Max log retention days

Hi There, Good day. I was looking at the Panorama configuration and found that the max retention days (expiration period) can be up to 2000 days. Initially, I thought it would be in the range of up to 90 days. Since it provides a range till 2000days, I have a requirement to store up to 1100 days (3 years). Assuming the log collectors are provi...

Resolved! Panorama - Device TAGs stopped working after upgrade to PAN-OS 10.1.x

Hi, So after upgrading Panorama (and our firewalls) to PAN-OS 10.1.x, our security policies stopped working which had device tags attached to them. Turned out, the rules simply dissapeared from the firewalls. On Panorama, Combined Rule Preview shows the actual (tagged) rules as normal, but after a successful push/commit there's no sign of t...

Resolved! Panorama does not show Built-in External Dyanmic-Lists

I am setting a new pair of M300s in HA Panorama mode running v10.2. My question is that when going in to view my External Dynamic List, I noticed that I only have one built-in EDL, which is PAN- Authentication Portal Exclude List, I do not see any other EDL's for High-Risk IP/URL/TOR Addresses.....How can I get these objects to populate so that ...

log retention is very short

Using the 'show system logdb-quota' command on my Panorama 10.1.5 system, it lists Current Retention days as very short for several of the logs. For example, threat logs are listed as having 12 days worth. I have 64GB of disk allocated to threat logs. If i export the entire threat log, i see only 80000 entries. PA are investigating why the logs...

Error con la conexion de firewall con Panorama

Se realiza conexión con 3 firewall (uno de ellos de manera local), se revisan la configuracion y estan correctas pero no es posible conectar con el firewall en panorama. Se anexa imagen de la situacion actual de los firewall. Gracias.Please note you are posting a public message where community members and experts can provide assistance. Shar...

Hide/show local configuration objects

Was running 9.1 on all firewalls. 10.0 on Panorama. Then something stupid happened and couldn't sync my HA pairs. I was forced to upgrade everything to 10.1.5. In the name of all that's stupid, on my local firewalls, when I log in, it shows me both the locally configured ipsec tunnel and the panorama configured tunnel object (the green gear)...

treysgrun_0-1654902933046.png

How to onboard palo in to panorama

Hi Team, Our palo already onboarded in to the panorama. Due to some reason our L3 team disabled panorama setting in the palo. Now we need to re-add in to the panorama. Please tell me how need to do? 1. Palo we need to enable pano setting only enough 2. or we need to import the config in the panorama as well ?

rbabu0 by L1 Bithead
  • 3274 Views
  • 1 replies
  • 0 Likes

Panorama Collector Log Forwarding not working

I noticed an issue with this feature before when I tried to set up an outgoing email on the Correlated Events log settings in the Panorama built-in collector group. My idea was to filter to certain networks and then send an email when a correlated event came in that matched the filter so that a ticket could be created and our desktop services f...

jsalmans by L4 Transporter
  • 2938 Views
  • 1 replies
  • 0 Likes
  • 847 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors