Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4916 Views
  • 0 replies
  • 0 Likes

Unlink FW to panorama for doing changes

Hi, We have several FWs managed from Panorama (VM). All the config in FW is done in Panorama.This morning the virtual enviroment (included panorama) was unaccesible so we needed to do changes in the FW in order to workaround the issue. In order to be able to do these policy changes in the FW we click on "Disable Panorama policy and objects" and...

BigPalo by L4 Transporter
  • 4222 Views
  • 5 replies
  • 0 Likes

Resolved! Update Panorama serial number via API

Hi, I am a newbie to Panorama, please help me figure out the api call I need to execute to replace the serial number. I have tried few options like https://1.0.20.30.40//api/?key=LUFRPT0zAndSoOnAndSoOnAndSoOn=&type=config&action=set&xpath=/config/devices/entry[@name='all']&element=<serial>12345678012345</serial> Didn...

Anipani by L0 Member
  • 3706 Views
  • 2 replies
  • 0 Likes

PaloAlto shared-gateway managed by panorama

HelloI have High-availability firewalls that I need to migrate to Panorama, the firewalls have multiple VSYS and a shared-gateway. I understand its not supported to manage shared-gateway by panorama (at least not yet) this why after I import the device configuration into panorama and I try to commit or export configuration bundle i get commit er...

UUID logs in panorama not populating

I can populate the column in panorama to show the rule uuid, but I cannot search by them on panorama. When populating the column- it actually shows up blank, no UUID shows up on panorama logs. Has anyone seen this before? I thought the rule UUID were supposed to populate with managed firewalls logs on panorama.

Sec101 by L4 Transporter
  • 2406 Views
  • 1 replies
  • 0 Likes

Redeploy new Panorama while existing Pan is in production

I have a Panorama that is several years old and currently running 8.1.19. I tried upgrading to 9.0 and found out that it was in legacy mode and the upgrade failed. My current VM has two drives but the second drive is only 500 GB, not the required 2 TB. We expanded the drive and did a reboot and the PAN would continually boot up into maintenanc...

Can Panorama running PAN-OS 10.1 manage firewalls running PAN-OS 9.1.x

Hello,So our environment has PA-3320's in our HQ's and PA-3360's in our data centers. We are replacing our PA-3320's with PA-460. The PA-460 has to run 10.1 so we will have to move our Panorama to 10.1 to manage the PA-460's. My question is can we manage our PA-3360's running 9.1.x? or wi;;; we have to upgrade them to 10.1. Thanks for the help.

rq_bbond by L0 Member
  • 3166 Views
  • 1 replies
  • 0 Likes

Technical Documentation when Panorama does a push to a NGFW

Hi All, I'm hoping to understand a bit more around how a Panorama device will push config to a NGFW. I've heard things such as Panorama doesn't actually send the config to the NGFW but the NGFW constantly polls the configured Panorama Server but I'm unable to find any technical documents around this to understand what sort of protocol/port it us...

App-Threat installation from Panorama

Hello There, I have a schedule created to push content from Panorama to all managed firewalls. I see most of them in device list, however I cannot see few of them in schedule's device list. could you suggest how to add remaining managed firewall in schedule. Thanks

Management ssl certificate in HA Panorama

Hi All, We have two Panorama devices running in HA (active/Passive) mode with PAN-OS 10.0.5. And there is a Certification authority and self sign certificate generated under certificates for panorama management access in the active device. referencing this self signed certificate SSL/TLS service profile has been created and the same is calle...

GN_MOTC by L0 Member
  • 2684 Views
  • 0 replies
  • 0 Likes

Resolved! not able to disable packet-capture for DNS security from panorama 10 to firewall 9.1

Panorama is running on 10.0.5 and Firewalls running on 9.1.7We want to disable packet-capture for DNS security license from Panorama , but there is no option in Panorama for DNS security as multiple categories replaced this option in 10.0 Panorama 10.0.5 Firewall 9.1.7 can we disable pcap for all new categories showing in DNS-Security in Panor...

Deepak25_0-1625631897133.png
Deepak25_0-1625632270687.png
Deepak25 by L3 Networker
  • 3594 Views
  • 2 replies
  • 0 Likes

granular filtering for panorama/logging service in log forwarding profile

Currently we are managing all firewall from Panorama and configured log forwarding profile to forward logs to panorama/logging service. To enable log forwarding to logging service we have also enabled option to forward logs in cortex data lake in all firewall (device > setup>management > enabled duplicate logging ). On cortex data lake ...

Deepak25 by L3 Networker
  • 2411 Views
  • 0 replies
  • 0 Likes

want to onboard panorama managed firewall on another cortex data lake instance

We have two cortex data lake instance of 1 TB and 5 Tb , 5 TB we are already using to send the logs from all firewalls which are panorama managed. So for 1 TB logging instance panorama is not bind. For 5 TB logging instance panorama is bind. As this 1 TB is not utilized and our logs are started to purge from 5 TB logging service instance , we wa...

Deepak25 by L3 Networker
  • 3110 Views
  • 0 replies
  • 0 Likes

Problem with panorama

Hi,The problem is that every so often when we try to compile the VMware panorama it restarts and we lose the changes.what could you do to solve the problem? Version panorama: 9.0.9Version of palo alto: 9.0.9-h1 Kind regards

BigPalo by L4 Transporter
  • 5438 Views
  • 8 replies
  • 0 Likes

Palo Alto Networks Firewall not Forwarding Logs to Panorama (VM and M-100)

Hi PA Experts! Another issue I stumped upon yesterday 😞We replaced one of our PA firewall 5050 to PA 5220 couple of days ago, and when I am trying to find thetraffic logs corresponding to that PA 5220 device on Panorama, it shows nothing.I duoble checked the configuration on Panorama and the device PA to see everything is setup correctly for fo...

Fatema by L2 Linker
  • 10983 Views
  • 10 replies
  • 0 Likes

Adding Passive Panorama

Hi, We are trying to add Passive Panorama to our existing Panorama. When I try to sync the settings. they sync but fail half way with the following errors HA-Sync job failed . Completion time=2021/06/29 17:22:56. JobId=62.

  • 853 Posts
  • 47 Subscriptions
Top Liked Authors