VM-Series in the Private Cloud
Use the VM-Series form factor to safeguard Private Cloud deployments. Use this forum to discuss deployments from VMware ESXi, VMware NSX-V, VMware NSX-T, KVM, Nutanix, Hyper-V, Openstack, and Cisco ACI.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VM-Series in the Private Cloud
Use the VM-Series form factor to safeguard Private Cloud deployments. Use this forum to discuss deployments from VMware ESXi, VMware NSX-V, VMware NSX-T, KVM, Nutanix, Hyper-V, Openstack, and Cisco ACI.
About VM-Series in the Private Cloud
Use the VM-Series form factor to safeguard Private Cloud deployments. Use this forum to discuss deployments from VMware ESXi, VMware NSX-V, VMware NSX-T, KVM, Nutanix, Hyper-V, Openstack, and Cisco ACI.

Discussions

Welcome to the VM-Series in the Private Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 3725 Views
  • 0 replies
  • 0 Likes

Resolved! PA-VM on ESXi 8.0.2 'interface configured but down'

I'm grateful to the person who wrote this article, and I'm sharing it here so that others don't go crazy like I did. PA-VM on ESXi 'interface configured but down' - Red9 By default DPDK is enabled on VM-Series firewalls as stated below. If the VM-Series firewall detects an unsupported driver, the firewall reverts to PacketMMap mode. TLDR: ...

GRPC status UNAVAILABLE in intelligent offload

I'm having a problem with Intelligent Traffic Offload.I get:GRPC status UNAVAILABLE in intelligent offloadGRPC status DEADLINE_EXCEEDED in intelligent offload No matter what I do, I can't connect to OPOF on my BlueField 2 and BlueField 3 cards. I've changed the firmware versions, etc. I'm working with the documentation (though I don't know i...

GCP Load balancer showing in Unhealthy state.

Hi Team, Flow:- On-Prem---->GCP(Interconnect) ---->External-LB---->Palo Alto---->Internal-LB---->GCVE. This is the flow/architecture we have in our environment. I have observed one thing when we enable both VM instance then LB showing in unhealthy state. I have attached the screenshot. Please let me know how to solve this i...

Upgrade DP Cores on VM

Hello everyone, I'm writing to ask if you've experienced something similar with your VM-Series We had a VM with 4 vCPUs (3 DP cores), and we've now upgraded it to 6 vCPUs (5 DP cores). The issue is that, despite adding 2 extra cores, the performance gain has been minimal—only about 10–15% at best. We use VMWare ESXi I configured the 5 DP cores...

procom by L1 Bithead
  • 1580 Views
  • 0 replies
  • 0 Likes

Palo Alto VM removal

Hello guys, could anyone guide me through the following process: 1) How do we remove old firewalls from Panorama and from Palo Alto support web site 2) How do we re-authorization of new firewalls in Palo Alto Support site 3) Authorize new firewalls and reboot systems Thank you

Malick by L0 Member
  • 4925 Views
  • 1 replies
  • 1 Likes

Invalid configuration error migrating Panorama from AWS VM to ESXi VM

Hello, We have an issue migrating Panorama from an AWS VM to an on-premises VM in VMware ESXi. We have followed the guide for VM migration, exporting the config and importing it into the new VM. We have the same PAN-OS 11.1.6-h3 and plugin versions, and the configuration in the new VM is completely clean, but when we try to commit we receive the...

Resolved! How to Increase Log Retention by Adding Disk to VM-Series

Hello,We are currently running 28 Palo Alto VM-Series firewalls, deployed as 14 HA pairs (active/passive). Each firewall is hosted on a virtualized environment with standard disk allocation.We heavily rely on traffic logs and threat logs for compliance purposes, and we're starting to hit retention limits due to limited disk capacity.My Questions...

VM Interfaces disconnected after ESXi Upgrade to 8.0.3

Hi, after an upgrade of an ESXi box hosting a PaloAlto VM we had issues which in the end forced usto reinstall the instance. We upgraded a VMware ESXi host from 7.0.3.x to 8.0.3, 24280767 and after the reboot everything seemed fine at first sight. But the PaloAlto VM had just it’s management interface connected and online. All traffic interfac...

Issue Running PA-VM in VMware Workstation 17.6.3

Hi: I downloaded the 30 day trial PA-VM and am trying to run it in VMware Workstation 17.6.3. I can get it to install, but shuts down after about 5 minutes. I also tried running the VM in VMware Fusion 11.5.6 with the same results. At this point, I am at a loss and any advice will be appreciated. Thanks! Mark

MRose77 by L0 Member
  • 3514 Views
  • 0 replies
  • 0 Likes

Resolved! Cannot log in to GUI and CLI after upgrade to 11.1.4-h7

After the upgrade to 11.1.4-h7 from 11.1.2-h3, we cannot log in using our admin credential on the GUI. We are getting error "Invalid username or password" and "Your login session has expired and you have been logged out for security reasons. Please log in again if you wish to continue." There were no changes before the upgrade. Cannot log in eve...

Glenyvie by L1 Bithead
  • 10429 Views
  • 4 replies
  • 0 Likes

Resolved! IPsec tunnel doesn't connect - no errors seen

Hi everyone, do you have any idea why this tunnel will not establish? I'm trying to connect with a partner company. The IPsec config is identical across two templates. Both sites have their own unique public IP and are connecting to the same peer IP on the partner's side. The Secondary_Gateway connects fine. But this Primary_Gateway only sho...

Site-to-Site VPN Fails in AWS

I have setup VPN tunnel on VM-Series Next-Gen Virtual Firewall w/ Advanced Security Subs (PAYG) in AWS with a remote site. I am having issues to establish VPN tunnel, log shows that phase 1 & 2 is loaded. For testing purposes, I have created one policy rule to allow any traffic to pass, I believe at least phase 1 should be up. I hope someone...

Resolved! Palo Alto VM-Series Software Firewall Keeps Shutting Down in Ubuntu Desktop 24.04.2 LTS KVM

Subject: Palo Alto VM-Series Software Firewall Keeps Shutting Down in Ubuntu Desktop 24.04.2 LTS KVM Good day from Singapore, I have asked ChatGPT Artificial Intelligence (AI) for assistance in installing and setting up Palo Alto VM-Series Software Firewall PA-VM-KVM-10.2.5.vm_eval.qcow2 in Ubuntu Desktop 24.04.2 LTS KVM. Below are the instr...

AWS HA IP-Secondary Not Working

Hi I am having issues with 2 Palo Alto's setup as an HA Pair using IP-Secondary failover, where the Secondary IP Address does not move between the two devices. I have found the following article which shows the error I am getting in the logs:- PA-VM deployed in AWS does not move ENI’s to newly active unit ... - Knowledge Base - Palo Alto N...

  • 109 Posts
  • 41 Subscriptions