Find your people. Pick a challenge. Ship something real. The CreatorCon Hackathon is coming to the Community Pavilion for one epic night. Every skill level, every role welcome. Join us on May 5th and learn more here.

Debug 'PaloAlto - Panorama Security policies' pattern

Thomas Buecker
Tera Contributor

Hi,

 

I need to enhance the pattern 'PaloAlto - Panorama Security policies' , but I'm not able to debug it as the connection always get's an error in Pattern Designer.

 

We have set up the firewall discovery with success and in the beginning the pattern 'PaloAlto - Firewall Manager' will be started and the other patterns will follow.

 

This means that the setup in general works, but I don't know how I can start the pattern designer debug session.
Neither the IP or host name of the firewall manager does work.

 

Thanks for your assistance in advance.

 

Kind Regards

 

Thomas

1 ACCEPTED SOLUTION

Svilen Ivanov
Tera Expert

Hi @Thomas Buecker 

Try this:
1. Execute a successful discovery and open the status.

2. Open the pattern to see the pattern log.

3. When you select Discovery there will be a Debug button showing in the upper right corner. Click on it.

4. Select the correct MID (this is important).

5. Do not try to enter a host  Just select for Pre-Execution Input select From Execution. Now select the successful discovery status.

6. Select Execution Instance if there is any.

You should be able to connect to a debug session and test out things.

View solution in original post

3 REPLIES 3

Tanushree Maiti
Kilo Patron

Hi @Thomas Buecker 

 

Could you please share if you are getting any error.

 

1. Check Certificate inside your mid server is upto date.

  Refer: https://www.servicenow.com/community/itom-forum/quot-palo-alto-firewall-manager-quot-discovery-patte...

 

2.  check this: https://www.servicenow.com/community/itom-forum/palo-alto-firewall-discovery/m-p/976686#M73130

 

3. https://www.servicenow.com/community/itom-forum/can-anyone-help-me-know-why-getting-the-error-quot-t...

 

4. hopefully your instance is not domain separated. If yes, \check this:

KB0953070 palo Alto firewall pattern is not triggered due to Domain separation 

 

 

Please mark this response as Helpful & Accept it as solution if it assisted you with your question.
Regards
Tanushree Maiti
ServiceNow Technical Architect
Linkedin:

Svilen Ivanov
Tera Expert

Hi @Thomas Buecker 

Try this:
1. Execute a successful discovery and open the status.

2. Open the pattern to see the pattern log.

3. When you select Discovery there will be a Debug button showing in the upper right corner. Click on it.

4. Select the correct MID (this is important).

5. Do not try to enter a host  Just select for Pre-Execution Input select From Execution. Now select the successful discovery status.

6. Select Execution Instance if there is any.

You should be able to connect to a debug session and test out things.

Awesome - thanks a lot.