Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4842 Views
  • 0 replies
  • 0 Likes

User-id is not showing through wireless

Hi, I'm facing an issue, users when they connect to wifi then source user is missing in the monitor tab. i checked in the cli mode as well there showing no record. while through lan some users also not showing but the rest are ok. Can anyone assist me on this ? ( Agentless user-id i'm using on the AD) Logs*** 2022-03-17 11:05:37.640 +0400 Erro...

Raheel1 by L0 Member
  • 1652 Views
  • 0 replies
  • 0 Likes

Is panorama able to see only the devices in their country with RO access.

Hello Community, Customer has 2 Panorama devices in A/P. They have devices on boarded to panorama. The requirement is the specific country will be able to see only the devices in their country with RO access. The Authentication method will be SAML with SSO. Could you please suggest how this could be fulfilled and how many Metadata files and ce...

Managed Firewall Information in CLI

Hello, I'm looking to get information of my monitored firewalls from CLI. So far I found the command show devices connected wich shows a list but some informations I need are missing. It don't find complementary commands to get what I want. Here what I am looking for on each monitored firewall : - hostname - ipv4 - serial - model - version ...

delete all logs from panorama

Our Panorama M600 is in a weird state with regards to logging. pushing configs to devices is just fine, but es-health is red and has been for the last few days. Thought it was rebuilding but sure looks like it's totally broken. We are thinking of wiping all data and starting from scratch (which is okay since we have logs on the firewalls to fa...

czane by L1 Bithead
  • 5733 Views
  • 4 replies
  • 0 Likes

Firewall not sending logs to correct log collector

Hi Friends, Firewall not sending logs to correct log collector, hence i followed the KB article. Firewall not sending logs to correct log collector - Knowledge Base - Palo Alto Networks But still same issue hence i say one more URL based on that executed delete log-collector preference-list. After that new panorama i am receiving logs. But is...

rbabu0 by L1 Bithead
  • 3329 Views
  • 2 replies
  • 0 Likes

Change Name of active Zones or Replace

Hi, we want to change the name from some active Zones that are active in policies. If we change the name than panormama display an error message. Is it possible and how, to change the name of a Zone oder replace it with a new one with the new name?

Resolved! TAGs for the use of Dynamic Address Group created on PANORAMAare not deployed to the firewalls if they are not used in some explicit way in the policy

I tell you the problem that we have detected today, with PANORAMA and our FWs,the objects that we are using through TAGs for the use of Dynamic Address Group are not deployed to the firewalls if they are not used in some explicit way in the policy. Do you know how it can be done so that it is shown?any idea?Greetings.

Alpalo by L4 Transporter
  • 3404 Views
  • 2 replies
  • 0 Likes

Managed PAs system log filtering and email alert on Panorama

If PAs are managed with Panorama and PAs are configured for log forwarding to Panorama. On Panorama > Log settings, Filter can be added for PAs system logs, logs can be seen on 'view filtered logs' as well. but email alerts are not generated. Only Panorama-based events are sent in email. If log settings are only for panorama system logs, then...

b.nazir by L0 Member
  • 5856 Views
  • 4 replies
  • 0 Likes

Error exceeds capacity

Hi All, We been having few commit failures on some of the devices either for security policy, decryption policy or for profile. While I can run the command " show system state filter cfg.general.max* " to display the max or threshold and commands like show running security-policy | match index to find the total count for each one indvidually...

ArunKu by L1 Bithead
  • 1613 Views
  • 0 replies
  • 0 Likes

Resolved! VR Configuration for Tunnel not pushing

Hi Team, When I tried to create a tunnel interface from Panorama to push to the Managed device, But after the push the VR configuration is not reflected in the Managed device the VR showing none. But when I check in panorama the interface it properly attached with a VR and showing properly, There is no Commit error, We tried to ...

SubaMuthuram_0-1645769601083.png
SubaMuthuram_1-1645769984012.png

Address book has no value

When I click on an address book entry in the GUI to view it's value it just says "There is no value for the selected item". It looks like a regular address book but there is no address book found under Objects->Addresses and this can be seen from the GUI or CLI. I was alerted to this because the traffic logs showed the traffic matching a def...

luchette by L1 Bithead
  • 2310 Views
  • 0 replies
  • 0 Likes

XML API: Panorama: How to Create/Get/Update the field "Audit Comment" of a Security Policy rule?

Settings Panorama version: 10.1 (latest) When creating/updating a Security Policy rule (see attached images for more info), I'm able to add/update Audit comment for a rule via Web browser by following this guide https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-web-interface-help/policies/audit-comment-archive.html . However, I fail to use X...

HermanEdwards_1-1645745621315.png
HermanEdwards_0-1645745433474.png

Panorama - Wrong Password Hashes/Salts After Migration To Panorama

Hi everybody, I noticed something when migration stand alone firewalls to panorama managed. In the past, I had multiple customers where I needed to migrate the local firewall configuration to panorama managed and I am allways following the official documentation here: https://docs.paloaltonetworks.com/panorama/10-0/panorama-admin/manage-firewa...

  • 845 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Posts
Top Liked Authors