Depending on how many rules are in your policy, it could take a while, yes. After creating all the security rules, it has to adjust the placement of each rule to ensure that they are placed where they need to be.
If you want to see what's going on, you can always tell Terraform to show you debug output using the TF_LOG environment variable so you can see what the provider is sending and receiving with regards to PAN-OS:
TF_LOG=debug terraform apply 2>&1 | tee out.log
Then you can view the "out.log" file afterwards to see the API calls and what's happening.
You'll also need to configure the provider to output both "send" and "receive" within your provider configuration block:
provider "panos" {
# ...other config options here
logging = [
"send",
"receive",
"action",
"query",
"op",
]
}
... View more