PAN-OS Log Forwarding Setup And Configuration
This playbook sets up and maintains log forwarding for the Panorama rulebase. It can be run when setting up a new instance, or as a periodic job to enforce log forwarding policy. You can either update all rules and override previous profiles, or update only rules that do not have a log forwarding profile configured.
- Pack
- PAN-OS
- Tasks
- 11
Inputs
- log-forwarding-name — The name of the log-forwarding object that will be attached to all of the rules.
- auto_commit — Should the rule be committed automatically or manually?
- pre-post-rulebase — Either the pre-rulebase or post-rulebase, depending on the rule structure.
- device-group — The device group to work on.
- override-existing-profiles — Should we override log-forwarding profiles that were already defined.
Commands used
- pan-os-edit-rule
- pan-os-list-rules