Palo Alto Networks Knowledgebase: Is There an Impact on Active Sessions when Changing the Name of a Zone?

Is There an Impact on Active Sessions when Changing the Name of a Zone?

3602
Created On 02/07/19 23:39 PM - Last Updated 02/07/19 23:39 PM
Mobile Network Infrastructure
Resolution

Yes, renaming a zone will impact all active sessions that reference it (in source and/or destination). When changing the name of a zone, the ID will change and all active sessions referencing the old zone name need to be cleared.

 

To clear all sessions on a firewall:

> clear session all

 

For more information about viewing and clearing data sessions, see:
How to View/Clear Data Sessions

 

When renaming a zone, a new zone object (with new name) is created in the background. A numeric ID is assigned to this new object created by the id-manager process. This ID will be used internally when referencing a specific zone, instead of alphanumerical name.

 

To check the IDs assigned to zone names, run the following CLI command:

> debug device-server dump idmgr type zone all

Since id-manager objects are cumulative, all the zone objects created since the last reset will be shown.

 

See Also

How to Change the Existing Zone Name when using Templates on Panorama

 

owner: nbilly



Attachments
Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm1cCAC&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Attachments
Choose Language