Information Technology Grimoire

Version .0.0.1

IT Notes from various projects because I forget, and hopefully they help you too.

Palo Alto Cheat Sheet Panorama

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-cli-quick-start/cli-cheat-sheets/cli-cheat-sheet-panorama

CommandDescription
show system info | match system-modeDisplay the current operational mode.
request system system-mode loggerSwitch from Panorama mode to Log Collector mode.
request system system-mode panurldbSwitch from Panorama mode to PAN-DB private cloud mode (M-500 appliance only).
request system system-mode panoramaSwitch an M-Series appliance from Log Collector mode or PAN-DB private cloud mode (M-500 appliance only) to Panorama mode.
request system system-mode panoramaSwitch the Panorama virtual appliance from Legacy mode to Panorama mode.
request system system-mode legacySwitch the Panorama virtual appliance from Panorama mode to Legacy mode.
set cli config-output-mode setChange the output for show commands to a format that you can run as CLI commands. Example: show device-group branch-offices command output after setting the format.
set panorama [off | on]Enable or disable the connection between a firewall and Panorama. Must be entered from the firewall CLI.
request high-availability sync-to-remote [running-config | candidate-config]Synchronize the configuration of M-Series appliance high availability (HA) peers.
request batch reboot [devices | log-collectors] <serial-number>Reboot multiple firewalls or Dedicated Log Collectors.
set dlsrvr poll-interval <5-60>Change the polling interval for Panorama to determine the progress of software or content updates on devices.
show devicegroups name <device-group-name>Show the history of device group commits, status of the connection to Panorama, and other information for firewalls assigned to a device group.
show templates name <template-name>Show the history of template commits, status of the connection to Panorama, and other information for firewalls assigned to a template.
show config pushed-shared-policyShow all the policy rules and objects pushed from Panorama to a firewall. Must be entered from the firewall CLI.
show config pushed-templateShow all the network and device settings pushed from Panorama to a firewall. Must be entered from the firewall CLI.
debug log-collector log-collection-stats show incoming-logsShow the current rate at which the Panorama management server or a Dedicated Log Collector receives firewall logs.
debug log-collector log-collection-stats show log-forwarding-statsShow the quantity and status of logs that Panorama or a Dedicated Log Collector forwarded to external servers.
show logging-status device <firewall-serial-number>Show status information for log forwarding to the Panorama management server or a Dedicated Log Collector from a specific firewall.
clear log [acc | alarm | config | hipmatch | system]Clear logs by type. Affects logs on Panorama, Dedicated Log Collectors, and collected firewall logs.