Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4910 Views
  • 0 replies
  • 0 Likes

Resolved! HTTP Response traffic

Hi guys, I have been seeing that when making an http connection that goes through the PA firewall, the request is logged, but the return message is not, that is, when in panorama I filter the traffic by source ip I see the http request but I do not see the response from the server. I mean, I don't see any log with source ip = server destination...

viri4to by L0 Member
  • 3784 Views
  • 1 replies
  • 0 Likes

Resolved! Failure to Commit changes in Panorama after removing a firewall as managed device

I removed a firewall that is managed through Panorama by going to Panorama > Managed Devices > Summary, selecting my firewall then selecting delete. This removed the firewall for me succesfully. However, when I go to make a Commit in Panorama it throws an error saying When I search for that serial number in Panorama it sure enough comes ...

popeja_0-1640092986664.png
popeja by L2 Linker
  • 5892 Views
  • 3 replies
  • 0 Likes

Log4j

What would I look for in logs if I were looking to see we had already been owned by this?

Panorama upgrade to 10.1.3-h

Panorama mgmt has been upgraded from 9.1.10 to 10.0.0 and then to 10.1.3-h. Post the upgrade, logs are not showing up in the monitor and not able to commit any changes. Palo alto firewalls are running with 9.1.6 version; is it a compatibility issue between PAN and firewall. If so what's the best solution. Can we upgrade Palo firewall to 10.0 ve...

Resolved! New Object not showing in Panorama

Hello, We are trying to build templates with IP addresses that are relevant to a device group. I have created a TEST_TEMPLATE under Panorama>Templates with NO devices added yet. Then created 'CORP' in the Device Groups.After this, created a device group object: Test_Object and commit to Panorama: successful.Under Network>Interfaces, tried ...

Farzana by L4 Transporter
  • 6239 Views
  • 3 replies
  • 0 Likes

Resolved! CVE-2021-44228 / Panorama

As most are aware, Panorama running 9.x are affected by log4j vulnerability. The security advisory mentions "This issue is only applicable to Panorama hardware and virtual appliances that have run in Panorama Mode or Log Collector Mode as part of a Collector Group. Panoramas running in Management Only Mode are not impacted." Does anyone know...

How to use ip public by from organization

Hi every one, I'm very nice to tall to you. I dont know how to use block IP that I bought from the Organization. When I bough block of IP, I got an AS number. I hire transit ip service from ISP. I config BGP to neighbor with ISP, after that, I dont know how to do next to use ip for NAT or use for my VM. Could someone can help me. Thanks a lot

Resolved! Device deployment from Panorama

Panorama > Device Deployment > Dynamic Updates > Applications and Threats Not all of my devices are showing up? If I choose install for the "contents" they all show (current or older versions), but not if I choose install for "Apps". All versions of GP, AV and WF appear to be normal. Any idea on where to begin to troubleshoot?

Disable inherited policies in a Device Group

I'm guessing this would be a Feature Request, as it's something that's not available in Panorama 7.x, 8.x, or 9.x (haven't checked 10.x). Is there a way to disable Policies (whether Security, NAT, QoS, etc) that have been inherited via the Device Group hierarchy? Meaning, if I have 3 Devices Groups (GP, Parent, Child), and I put 10 Security ...

fjwcash by L4 Transporter
  • 5866 Views
  • 3 replies
  • 0 Likes

Migrate Panorama from Azure to ESXi is failed

I am trying migration Panorama with following procedure but have not succeeded, yet. https://docs.paloaltonetworks.com/panorama/8-1/panorama-admin/set-up-panorama/transition-to-a-different-panorama-model/migrate-a-panorama-virtual-appliance-to-a-different-hypervisor.html Now I am in STEP10 and I tried commit to panorama and failed. Error mes...

Resolved! Panorama import a list of objects from csv

Hello, I have recently taken on a project. This involves me restricting access for a specific machine to a list of public IP address which I have a list of. Normally I would just bite the bullet and manually enter the objects by hand but this time its over 100 addresses and I think the better option is making an address group of these addresse...

Resolved! replacing virtual routes ip

Hi, I need to replace all instances of a given IP address ( "Next Hop" address in the virtual router) with a different IP address. How to do that trough Panorama? Thank you in advance

Adnan_SA by L1 Bithead
  • 3490 Views
  • 2 replies
  • 0 Likes

Need to test policy on many policies

Hi. I need to test if an internal site is accessable from several different zones. the destination and port will always be the same, and any source IP in the zones would work as a test, is there a way to run a policy match in a bulk manner where I can input everything once and Pano just spits out the policy that each source hits?

Pan Configurator Failing to download Panorama Config

I have configured the latest version of the PAN-Configurator. I have created my API key from a superuser account. when I tried to issue a command to label some rules it fails php rules-edit.php in=api://192.168.0.10 ruletype=security location=NDH1-CHC-FW actions=tag-Add:REV4DELeltion 'filter=(rule is.disabled)'I get the following error:---------...

Kaliman by L1 Bithead
  • 10097 Views
  • 8 replies
  • 0 Likes
  • 853 Posts
  • 47 Subscriptions
Top Liked Authors