Pushed config from Panorama not being applied on the local Firewall

Pushed config from Panorama not being applied on the local Firewall

26088
Created On 07/06/20 15:03 PM - Last Modified 08/21/20 01:46 AM


Symptom


  • Pushed config from Panorama to the Firewall (FW) not showing changes applies on the local FW UI
  • An orange gear shows next to the green gear on the local FW


Environment


 
  • Palo Alto Firewall managed by Panorama.
  • Any PAN-OS.


Cause


The configuration of Panorama has been locally overwritten.

Resolution


  1. On the Firewall, select the configuration that is failing to be applied by Panorama.
  2. Click on the "Revert" option.
  3. Commit to the local FW (that will delete the local configuration and FW will rely on the pushed Panorama config).
An example of Before and After pictures of an object is displayed below.

Before:
 
Revert Option

After:
 
Override option


Additional Information


 If local firewall configuration needs to be used, then one can use the override button and apply the local configuration.

Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008UgM&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language