Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

I Can't do Palo Alto Networks Integration with my Aruba Controller.

This thread has been viewed 2 times
  • 1.  I Can't do Palo Alto Networks Integration with my Aruba Controller.

    Posted Nov 17, 2017 08:43 AM

    Hello, I have a problem with the integration. I have an Aruba Controller and a Palo Alto Firewall. I configured the controller and the firewall like says in this pdf file http://www.arubanetworks.com/assets/pso/SG_PaloAltoNetworks.pdf : "Aruba Controller and Palo Alto Networks Next-Generation Firewall Integration Details"

    When I debug with the command "show pan debug" in the controller, the return message is: 

    PAN Server: myIP:443

    State: DOWN
    Last error: Could not find < response > in the XML response

     

    More: myIP is my GlobalProtect's IP. I can access to https://myIP to get the GlobalProtect agent without problems.

    I have installed the CA certificate in the controller. 

     

    Are there something else that I have to configure? 

     

     

     



  • 2.  RE: I Can't do Palo Alto Networks Integration with my Aruba Controller.

    Posted Nov 20, 2017 01:26 PM

    Thank you for bringing this up. I'm experiencing a similar problem enabling controller to firewall integration. I haven't performmed a packet capture as I've seen recommended in other posts but that's the next step.


    lgervasoni@percom.com.ar wrote:

    Hello, I have a problem with the integration. I have an Aruba Controller and a Palo Alto Firewall. I configured the controller and the firewall like says in this pdf file http://www.arubanetworks.com/assets/pso/SG_PaloAltoNetworks.pdf : "Aruba Controller and Palo Alto Networks Next-Generation Firewall Integration Details"

    When I debug with the command "show pan debug" in the controller, the return message is: 

    PAN Server: myIP:443

    State: DOWN
    Last error: Could not find < response > in the XML response

     

    More: myIP is my GlobalProtect's IP. I can access to https://myIP to get the GlobalProtect agent without problems.

    I have installed the CA certificate in the controller. 

     

    Are there something else that I have to configure? 

     

     

     


     



  • 3.  RE: I Can't do Palo Alto Networks Integration with my Aruba Controller.

    Posted Nov 21, 2017 09:34 AM

    Have you got the same error? 

    Packet capture from what source and destination?