Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 5067 Views
  • 0 replies
  • 0 Likes

Unlink FW to panorama for doing changes

Hi, We have several FWs managed from Panorama (VM). All the config in FW is done in Panorama.This morning the virtual enviroment (included panorama) was unaccesible so we needed to do changes in the FW in order to workaround the issue. In order to be able to do these policy changes in the FW we click on "Disable Panorama policy and objects" and...

BigPalo by L4 Transporter
  • 4379 Views
  • 5 replies
  • 0 Likes

Resolved! Update Panorama serial number via API

Hi, I am a newbie to Panorama, please help me figure out the api call I need to execute to replace the serial number. I have tried few options like https://1.0.20.30.40//api/?key=LUFRPT0zAndSoOnAndSoOnAndSoOn=&type=config&action=set&xpath=/config/devices/entry[@name='all']&element=<serial>12345678012345</serial> Didn...

Anipani by L0 Member
  • 3836 Views
  • 2 replies
  • 0 Likes

UUID logs in panorama not populating

I can populate the column in panorama to show the rule uuid, but I cannot search by them on panorama. When populating the column- it actually shows up blank, no UUID shows up on panorama logs. Has anyone seen this before? I thought the rule UUID were supposed to populate with managed firewalls logs on panorama.

Sec101 by L4 Transporter
  • 2469 Views
  • 1 replies
  • 0 Likes

Redeploy new Panorama while existing Pan is in production

I have a Panorama that is several years old and currently running 8.1.19. I tried upgrading to 9.0 and found out that it was in legacy mode and the upgrade failed. My current VM has two drives but the second drive is only 500 GB, not the required 2 TB. We expanded the drive and did a reboot and the PAN would continually boot up into maintenanc...

Can Panorama running PAN-OS 10.1 manage firewalls running PAN-OS 9.1.x

Hello,So our environment has PA-3320's in our HQ's and PA-3360's in our data centers. We are replacing our PA-3320's with PA-460. The PA-460 has to run 10.1 so we will have to move our Panorama to 10.1 to manage the PA-460's. My question is can we manage our PA-3360's running 9.1.x? or wi;;; we have to upgrade them to 10.1. Thanks for the help.

rq_bbond by L0 Member
  • 3238 Views
  • 1 replies
  • 0 Likes

Technical Documentation when Panorama does a push to a NGFW

Hi All, I'm hoping to understand a bit more around how a Panorama device will push config to a NGFW. I've heard things such as Panorama doesn't actually send the config to the NGFW but the NGFW constantly polls the configured Panorama Server but I'm unable to find any technical documents around this to understand what sort of protocol/port it us...

App-Threat installation from Panorama

Hello There, I have a schedule created to push content from Panorama to all managed firewalls. I see most of them in device list, however I cannot see few of them in schedule's device list. could you suggest how to add remaining managed firewall in schedule. Thanks

Resolved! not able to disable packet-capture for DNS security from panorama 10 to firewall 9.1

Panorama is running on 10.0.5 and Firewalls running on 9.1.7We want to disable packet-capture for DNS security license from Panorama , but there is no option in Panorama for DNS security as multiple categories replaced this option in 10.0 Panorama 10.0.5 Firewall 9.1.7 can we disable pcap for all new categories showing in DNS-Security in Panor...

Deepak25_0-1625631897133.png
Deepak25_0-1625632270687.png
Deepak25 by L3 Networker
  • 3716 Views
  • 2 replies
  • 0 Likes

Problem with panorama

Hi,The problem is that every so often when we try to compile the VMware panorama it restarts and we lose the changes.what could you do to solve the problem? Version panorama: 9.0.9Version of palo alto: 9.0.9-h1 Kind regards

BigPalo by L4 Transporter
  • 5677 Views
  • 8 replies
  • 0 Likes

Palo Alto Networks Firewall not Forwarding Logs to Panorama (VM and M-100)

Hi PA Experts! Another issue I stumped upon yesterday 😞We replaced one of our PA firewall 5050 to PA 5220 couple of days ago, and when I am trying to find thetraffic logs corresponding to that PA 5220 device on Panorama, it shows nothing.I duoble checked the configuration on Panorama and the device PA to see everything is setup correctly for fo...

Fatema by L2 Linker
  • 11320 Views
  • 10 replies
  • 0 Likes

Adding Passive Panorama

Hi, We are trying to add Passive Panorama to our existing Panorama. When I try to sync the settings. they sync but fail half way with the following errors HA-Sync job failed . Completion time=2021/06/29 17:22:56. JobId=62.

Moving Panorma to a different hypervisor

We following article https://docs.paloaltonetworks.com/panorama/9-1/panorama-admin/set-up-panorama/transition-to-a-different-panorama-model/migrate-a-panorama-virtual-appliance-to-a-different-hypervisor.html to migrate from Azure to ESX, and on commit of the restored configuration snapshot (STEP 10 of the article) we are receiving the error “In...

0.png

FIPS Enabled Panorama - Change Management IP

Hello, Is there a best practice, for changing the management IP on a FIPS enabled Panorama M-100?I have a FIPs enabled Panorama M-100. It is configured with a management interface for administrative functions on one network. It is configured with another interface on a different network to communicate with managed firewalls (Layer 2 Adjacent). I...

Roger_K by L0 Member
  • 3163 Views
  • 2 replies
  • 0 Likes

Resolved! Multiple Portals Same Template Panorama Multiple Vsys

I'm trying to see if there is a good way to use templates to create 2 different global protect portals using panorama. This would be used as a failover scenario, and ease changes, allowing us to use 1 template to configure both firewalls. Name and fqdn would be the same, just failover to the other IP. Problem is that I can't seem to find...

Sec101 by L4 Transporter
  • 9309 Views
  • 9 replies
  • 0 Likes
  • 728 Posts
  • 47 Subscriptions
Top Solution Authors
Top Liked Authors
Labels