当 Firewall "服务路线"与以太网接口配置时 Panorama ,为什么 Panorama 显示连接到 firewall "管理接口"?

当 Firewall "服务路线"与以太网接口配置时 Panorama ,为什么 Panorama 显示连接到 firewall "管理接口"?

9041
Created On 08/30/20 21:28 PM - Last Modified 05/20/25 02:25 AM


Question


当 Firewall "服务路线"与以太网接口配置时 Panorama ,为什么 Panorama 显示连接到 firewall "管理接口"?
 


Environment


  • PANOS 版本: 8.1.x, 9.0.x, 9.1.x, 10.0.x
  • Hardware 
  • VM
 
 
示例:
  • 拓扑结构
用户添加的图像
  • Firewall服务路线
用户添加的图像
  • Panorama:
panorma> show devices connected | match <firewall's serial-number>

<firewall's serial-number>             <firewall's hostname>        <firewall's management-interface-ip>  unknown                                yes
  Certificate subject Name: <firewall's serial-number>

panorama> show netstat numeric yes | match 3978
tcp6 0 0 <panorama's ip-address>:3978 <firewall's ethernet-ip-address>:52570 ESTABLISHED
  • Firewall:
Firewall> show system info
hostname: Firewall
ip-address: <mgmt ip>
public-ip-address: unknown
serial: <serial-number>

Firewall> show netstat numeric yes | match 3978
tcp 0 0 <firewall's ethernet-ip-address>:39938 <panorama's ip-address>:3978 ESTABLISHED


Answer


  1. 打开 IP 的地址 firewall Panorama 取自显示系统信息命令的 firewall
  2. 对于非 ZTP firewall , Panorama 将显示 IP firewall mgmt接口的地址


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HAZ2CAO&lang=zh_CN&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language