Known Issues in Panorama Plugin for AWS 3.0.2
Table of Contents
Expand all | Collapse all
-
-
-
-
-
- Features Introduced in Enterprise Data Loss Prevention 4.0.2
- Known Issues in Enterprise DLP Plugin 4.0.2
- Features Introduced in Enterprise Data Loss Prevention 4.0.1
- Known Issues in Enterprise DLP Plugin 4.0.1
- Features Introduced in Enterprise Data Loss Prevention 4.0.0
- Known Issues in Enterprise DLP Plugin 4.0.0
-
- Features Introduced in Enterprise Data Loss Prevention 3.0.8
- Features Introduced in Enterprise Data Loss Prevention 3.0.7
- Features Introduced in Enterprise Data Loss Prevention 3.0.6
- Features Introduced in Enterprise Data Loss Prevention 3.0.5
- Features Introduced in Enterprise Data Loss Prevention 3.0.4
- Features Introduced in Enterprise Data Loss Prevention 3.0.3
- Features Introduced in Enterprise Data Loss Prevention 3.0.2
- Features Introduced in Enterprise Data Loss Prevention 3.0.1
- Features Introduced in Enterprise Data Loss Prevention 3.0.0
- Known Issues in Enterprise Data Loss Prevention 3.0.8
- Known Issues in Enterprise Data Loss Prevention 3.0.7
- Known Issues in Enterprise Data Loss Prevention 3.0.6
- Known Issues in Enterprise Data Loss Prevention 3.0.5
- Known Issues in Enterprise Data Loss Prevention 3.0.4
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 3.0.3
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 3.0.0
-
- Features Introduced in Enterprise Data Loss Prevention 1.0.8
- Features Introduced in Enterprise Data Loss Prevention 1.0.3
- Features Introduced in Enterprise Data Loss Prevention 1.0.1
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.8
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.7
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.6
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.4
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.3
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.2
- Known Issues in Enterprise Data Loss Prevention (DLP) Plugin 1.0.1
- Features Introduced in the Enterprise Data Loss Prevention (DLP) Cloud Service
- Limitations
-
-
Known Issues in Panorama Plugin for AWS 3.0.2
The following list describes known issues
in the Panorama Plugin for AWS 3.0.2.
PLUG-7659
The AWS access key and secret key containing
a plus (+) character are not parsed correctly when configured on
the Panorama plugin for AWS using an XML API call.
Workaround
: Configure the access key and secret key manually
through the Panorama plugin for AWS user interface or the CLI.PLUG-9423
If you are using multiple role ARNs for
multiple monitoring definitions, after upgrade to 3.0.x plugin,
you must navigate to and
then change the name for every role ARN entry that the plugin has
learned before you commit your new configuration after upgrade.
Panorama
Plugins
AWS
Setup
PLUG-9182
Using the CLI command
debug plugins aws debug-aws-orchestration name <>
before
or during a deployment return error messages similar to the following:Before deployment
<response status="success"><result>Traceback (most recent call last): File "/installed/aws/scripts/op/debug_aws_orchestration.py", line 532, in <module> get_deployment_info(deploy_name, config_xml, db) File "/installed/aws/scripts/op/debug_aws_orchestration.py", line 64, in get_deployment_info if len(deploy_entry)!=0: TypeError: object of type 'NoneType' has no len()
During deployment
{{<response status="success"><result>Traceback (most recent call last): File "/installed/aws/scripts/op/debug_aws_orchestration.py", line 543, in <module> out_dict = describe_stacks(stack_name, access_key, secret_key, region, role_arn)[0] File "/installed/aws/scripts/op/debug_aws_orchestration.py", line 166, in describe_stacks cloudwatch_client, elbv2_client, tgw_id, cross_ec2_client, role_arn) File "/installed/aws/scripts/op/debug_aws_orchestration.py", line 459, in list_stack_resources tgw_rtbID=tgw_attach_response['TransitGatewayAttachments'][0]['Association']['TransitGatewayRouteTableId'] KeyError: 'Association' }}
Workaround:
Use this command after a successful deployment.PLUG-9327
When configuring Security VPC, if you
select only one Availability Zone (AZ), the deployment fails and
returns an error message—
An error occurred (ValidationError) when calling the CreateStack operation: Parameter 'NumberOfAZs' must be a number not less than 2
.Workaround:
- Undeploy the deployment.
- Add two or more AZs in the Security VPC configuration.
- Commit the configuration to Panorama.
- Redeploy the deployment.
PLUG-9918
Shared device groups on Panorama do not
learn IP address information received from AWS by the Panorama plugin
for AWS.
Workaround
: When configuring a dynamic address group,
specify an individual device group instead of selecting Shared
.