Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4881 Views
  • 0 replies
  • 0 Likes

AWS Panorama Instance Upgrade - Cannot Login

I recently tried to upgrade my AWS Panorama instance from t2.xlarge to c5.4xlarge. When I started the instance back up the web interface did not work. So then I tried to ssh into the instance and it denies any login attempts. Any assistance would be greatly appreciated.

addawes by L1 Bithead
  • 1573 Views
  • 0 replies
  • 0 Likes

want to add third panorama in collector group for logging

In current setup we have Panorama M200 in HA pair and managing location A and location B firewall centrally. We have enabled local log collector on both Panorama and added in same collector group with redundancy enabled. Also log forwarding preference is enabled , in which location A firewalls sending logs to Primary-Active Panorama and location...

Deepak25_0-1646954254120.png
Deepak25 by L3 Networker
  • 4088 Views
  • 3 replies
  • 0 Likes

User-id is not showing through wireless

Hi, I'm facing an issue, users when they connect to wifi then source user is missing in the monitor tab. i checked in the cli mode as well there showing no record. while through lan some users also not showing but the rest are ok. Can anyone assist me on this ? ( Agentless user-id i'm using on the AD) Logs*** 2022-03-17 11:05:37.640 +0400 Erro...

Raheel1 by L0 Member
  • 1669 Views
  • 0 replies
  • 0 Likes

Is panorama able to see only the devices in their country with RO access.

Hello Community, Customer has 2 Panorama devices in A/P. They have devices on boarded to panorama. The requirement is the specific country will be able to see only the devices in their country with RO access. The Authentication method will be SAML with SSO. Could you please suggest how this could be fulfilled and how many Metadata files and ce...

Managed Firewall Information in CLI

Hello, I'm looking to get information of my monitored firewalls from CLI. So far I found the command show devices connected wich shows a list but some informations I need are missing. It don't find complementary commands to get what I want. Here what I am looking for on each monitored firewall : - hostname - ipv4 - serial - model - version ...

delete all logs from panorama

Our Panorama M600 is in a weird state with regards to logging. pushing configs to devices is just fine, but es-health is red and has been for the last few days. Thought it was rebuilding but sure looks like it's totally broken. We are thinking of wiping all data and starting from scratch (which is okay since we have logs on the firewalls to fa...

czane by L1 Bithead
  • 5808 Views
  • 4 replies
  • 0 Likes

Firewall not sending logs to correct log collector

Hi Friends, Firewall not sending logs to correct log collector, hence i followed the KB article. Firewall not sending logs to correct log collector - Knowledge Base - Palo Alto Networks But still same issue hence i say one more URL based on that executed delete log-collector preference-list. After that new panorama i am receiving logs. But is...

rbabu0 by L1 Bithead
  • 3367 Views
  • 2 replies
  • 0 Likes

Change Name of active Zones or Replace

Hi, we want to change the name from some active Zones that are active in policies. If we change the name than panormama display an error message. Is it possible and how, to change the name of a Zone oder replace it with a new one with the new name?

Resolved! TAGs for the use of Dynamic Address Group created on PANORAMAare not deployed to the firewalls if they are not used in some explicit way in the policy

I tell you the problem that we have detected today, with PANORAMA and our FWs,the objects that we are using through TAGs for the use of Dynamic Address Group are not deployed to the firewalls if they are not used in some explicit way in the policy. Do you know how it can be done so that it is shown?any idea?Greetings.

Alpalo by L4 Transporter
  • 3434 Views
  • 2 replies
  • 0 Likes

Managed PAs system log filtering and email alert on Panorama

If PAs are managed with Panorama and PAs are configured for log forwarding to Panorama. On Panorama > Log settings, Filter can be added for PAs system logs, logs can be seen on 'view filtered logs' as well. but email alerts are not generated. Only Panorama-based events are sent in email. If log settings are only for panorama system logs, then...

b.nazir by L0 Member
  • 5932 Views
  • 4 replies
  • 0 Likes

Error exceeds capacity

Hi All, We been having few commit failures on some of the devices either for security policy, decryption policy or for profile. While I can run the command " show system state filter cfg.general.max* " to display the max or threshold and commands like show running security-policy | match index to find the total count for each one indvidually...

ArunKu by L1 Bithead
  • 1629 Views
  • 0 replies
  • 0 Likes

Resolved! VR Configuration for Tunnel not pushing

Hi Team, When I tried to create a tunnel interface from Panorama to push to the Managed device, But after the push the VR configuration is not reflected in the Managed device the VR showing none. But when I check in panorama the interface it properly attached with a VR and showing properly, There is no Commit error, We tried to ...

SubaMuthuram_0-1645769601083.png
SubaMuthuram_1-1645769984012.png

Address book has no value

When I click on an address book entry in the GUI to view it's value it just says "There is no value for the selected item". It looks like a regular address book but there is no address book found under Objects->Addresses and this can be seen from the GUI or CLI. I was alerted to this because the traffic logs showed the traffic matching a def...

luchette by L1 Bithead
  • 2355 Views
  • 0 replies
  • 0 Likes

XML API: Panorama: How to Create/Get/Update the field "Audit Comment" of a Security Policy rule?

Settings Panorama version: 10.1 (latest) When creating/updating a Security Policy rule (see attached images for more info), I'm able to add/update Audit comment for a rule via Web browser by following this guide https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-web-interface-help/policies/audit-comment-archive.html . However, I fail to use X...

HermanEdwards_1-1645745621315.png
HermanEdwards_0-1645745433474.png
  • 847 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors