Commit from Panorama Fails - Invalid rules

Commit from Panorama Fails - Invalid rules

35588
Created On 09/26/18 13:53 PM - Last Modified 06/08/23 08:52 AM


Resolution


Symptoms

Commit from Panorama fails because of the following errors:

to is missing under entry
Invalid rules rule1
Invalid rules
Invalid security
Invalid rulebase
Invalid vsys vsys1
Invalid vsys
Invalid configuration for localhost.localdomain
Invalid devices

 

Issue

If the firewall has a local security policy with a rule named "rule1" and inside that rule is a destination zone of "none". (note: not "any").
This is not allowed, and will cause issues, which is why the policy does not commit properly.

 

Resolution

Modified the "rule1" to have a valid zone "any" or other existing zone , instead of "none"  inside of the needed columns.

 

owner: jdelio



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClxyCAC&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language