Telemetry data not being sent to cloud AIOPS, reason: CDL Receiver Key Empty
7950
Created On 10/31/23 17:00 PM - Last Modified 01/29/24 16:37 PM
Symptom
- Failed to send telemetry data with error: CDL Receiver Key Empty.
> show device-telemetry stats all Device Telemetry Statistics: device-health-performance: last-attempt: Mon Sep 4 10:21:03 CEST 2023 last-success: N/A num-of-failed-attempts: 568 reason: CDL Receiver Key Empty status: failed product-usage: last-attempt: Mon Sep 4 10:21:03 CEST 2023 last-success: N/A num-of-failed-attempts: 568 reason: CDL Receiver Key Empty status: failed threat-prevention: last-attempt: Mon Sep 4 10:21:03 CEST 2023 last-success: N/A num-of-failed-attempts: 568 reason: CDL Receiver Key Empty status: failed
- Connection against the AIOPS server is getting closed in the SSL handshake, right after the Client Hello.
var/log/pan/device_telemetry_curl.log:
2023-09-04 03:21:03,114 dt INFO S1: CDL: RSP KEY ERR CODE: ['Note: Unnecessary use of -X or --request, POST is already inferred.
....
'* Establish HTTP proxy tunnel to br-prd1.de1.ew3.cdl.paloaltonetworks.com:443',
....
'* OpenSSL SSL_connect: SSL_ERROR_SYSCALL in connection to br-prd1.de1.ew3.cdl.paloaltonetworks.com:443
' 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0',
'* Closing connection 0',
'curl: (35) OpenSSL SSL_connect: SSL_ERROR_SYSCALL in connection to br-prd1.de1.ew3.cdl.paloaltonetworks.com:443'] Environment
- Any Palo Alto Networks Firewall or Panorama
- Any PAN-OS version
Cause
Before you can begin using a firewall or Panorama appliance with licensed products that you have activated, you must first associate it with the tenant in which you have activated a compatible product.
Resolution
Add the firewall to a tenant by following this process to create the Device Associations.
Additional Information
- Domains Required for AIOps for NGFW: https://docs.paloaltonetworks.com/aiops/aiops-for-ngfw/get-started-with-aiops/fqdns
- TCP Ports and FQDNs Required for Cortex Data Lake: https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-cortex-data-lake/ports-and-fqdns