Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.
About Panorama Discussions
Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

Discussions

Welcome to the Panorama Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4909 Views
  • 0 replies
  • 0 Likes

SYSTEM ALERT : critical : High root partition usage; going to state Non-Functional

I have a pair of Panorama running in Active/Passive version 10.2.4-h4. Yesterday, I got this alert on the Active Panorama and it goes from Active to non-functional: 'High root partition usage; going to state Non-Functional' and " and "Disk usage for / exceeds limit, 100 percent in use, cleaning filesystem". It was in this state for 30 minutes...

dtran by L4 Transporter
  • 7194 Views
  • 2 replies
  • 0 Likes

Panorama VM and HPE Simplivity

Hey everyone, We are setting up Panorama in a HPE Simplivity environment. We cannot set our storage to "thick" as this is not allowed with how Simplivity is set up. Has anyone else deployed Panorama in a HPE Simplivity hyperconverged environment? Any issues? Thank you

Panorama HA sync between on-prem and cloud VM Series

Hello, If you deploy Panorama VM with 1 active instance on-premises and 1 passive instance in the cloud, you might encounter issues with HA Sync when enforcing the permitted IP address restriction on the Panorama management interface. Panorama Management IP address pan-on-prem - 10.10.10.10 pan-on-cloud - 20.20.20.10 Let's assume that for H...

bpride by L0 Member
  • 1587 Views
  • 0 replies
  • 0 Likes

Threat/blocked activity in ACC is not displaying any data on Panorama

Hello experts,our Panorama is not showing any data in ACC before early January for any of the firewalls neither selecting all groups or one by one, after that time all looks fine. No changes or upgrades were performed. Locally the firewalls are showing ACC data correctly. So far we have rebooted Panorama. I couldn't find any related bug. Any sug...

Panorama error when pushing template

Hi I have Panorama running 10.2.9h16 and I get the following error when pushing the template to PA 5430 newly added devices. The error is: Internal error during selective push config generation. I am not sure what the problem could be. Any help is appreciated

Amin2 by L2 Linker
  • 1241 Views
  • 3 replies
  • 0 Likes

How to change vsys name in Panorama managed PA

Hello. In PA-5400 series under panorama management (OS ver 11.1.x), is it OK to change the VSYS name by the following procedure? 1. Disable Device&NW Template in PA5400 *Information of Panorama management such as IF information will disappear.2.Change Vsys name in PA5400.3.Enable Device&NW Template in PA54004.Commit with PA54005.Push...

n-tomo by L2 Linker
  • 1080 Views
  • 0 replies
  • 1 Likes

Firewall not connecting to Panorama

Hello I have new deployed Panorama and new PA-440 Firewall. I setup Panorama with all basic settings like IP address/netmask, default GW, DNS, it has license assigned. Next I generated AuthKey for the firewalls with validity for 10 days and without SN specified. PA-440 is in remote location and has a basic WAN setup and IPSec VPN to my datace...

AdamHP by L1 Bithead
  • 65652 Views
  • 22 replies
  • 0 Likes

Panorama Onboarding and Managing of PAN FW's

Hi All, I have a few questions, but let me share first what happened. End State Goal: Have the Panorama manage our HQ and Branch Firewalls( 5 Firewalls Involved, We have license for this) We have tried to onboard and use panorama for management of our PAN Firewalls. We have successfully onboarded our Active/Passive firewalls (From Device&g...

Panorama unable to access GUI after disabling encryption

Hi all, Recently implemented VAPT and found that TLS_RSA_WITH_AES_128_GCM_SHA256 is weak and should not be enabled. We disable the SSL TLS settings via the “set panorama ssl-tls-service profile “SSL TLS Profile 01” enc-algo-aes-128-gcm no”, however unable to access pano GUI afterwards. Anybody knows how to access GUI while disabling the VAP...

Resolved! Upgrade to 11.1.4-h1 for both Panorama and managed firewalls

Hello, I'm beginner with Palo Alto and want to ask somes questions: I can upgrade panorama (10.2.10-h2 actually to 11.1.4-h1) but when i check updates in device deployement for my managed firewall (VM,PA-3200,PA-460-,PA-410) i don't see a similar version. Does i need to do something like upgrade panorama before?

Panorama shared policy Out-of-Sync

i have a couple of firewalls being managed by panorama since long working perfectly. Recently, i saw the shared policy in Device>Summary>Sharedpolicy> Out-of-Sync> panorama pushed versions are identical on managed firewalls. in Template column > In Sync > but panorama pushed versions are different in FW01 and FW02. So my query ...

localhost.localdomain shows up in show config diff

If I enter config changes, set the cli config output to set and compare with running config, it seems I get some extra keywords in my output. The output line does not work to repaste back into the cli, creating extra steps to generate a "patch" config to apply later and not disrupt interim chnages (as long as they don't directly conflict) exam...

  • 853 Posts
  • 47 Subscriptions
Top Liked Authors