Log Collector Disconnected and/or Not In Sync
(my appologies if you are already checking for this, I didn't have Indeni when it happend)
Device Make/Model
- Palo Alto Networks Panorama
Operating System
Description
- Alert when a Log Collector goes into a disconnected state or is not In Sync. Could indicate serveral other underlying issues especially when upgrading from 7.x to 8.x Panorama
Remediaion Steps
- I'd have to research this a bit further. There were several issues causing this but doing a commit to the Log Collector Group fixed things up in the end. There are some things to watch out for though.
Command or Method
- show log-collector connected
Output Example
admin@PA_M100-01(primary-active)> show log-collector connected
Serial CID Hostname Connected Config Status SW Version IPv4 - IPv6
---------------------------------------------------------------------------------------------------------
003001001234 4 PA_M100-01 yes In Sync 8.0.4 172.18.1.100 - unknown
Redistribution status: none
Last commit-all: commit succeeded, current ring version 2
SearchEngine status: Active
md5sum 8e55a03b502b79bba1af4bed86cea223 updated at ?
Certificate Status:
Certificate subject Name:
Certificate expiry at: none
Connected at: none
Custom certificate Used: no
Output Expectations
Serial CID Hostname Connected Config Status SW Version IPv4 - IPv6
---------------------------------------------------------------------------------------------------------
003001001283 5 PA_M-100-02 yes In Sync 8.0.4 172.18.1.101 - unknown
Redistribution status: none
Last commit-all: none, current ring version 2
SearchEngine status: Active
md5sum bcd26b8fe27ace1797aae325bfdac36d updated at 2017/09/08 11:44:14
Certificate Status:
Certificate subject Name: 003001001712
Certificate expiry at: 2027/08/25 17:07:55
Connected at: 2017/08/29 13:45:31
Custom certificate Used: no