: Known Issues in the Panorama Plugin for Azure 5.1.1
Focus
Focus

Known Issues in the Panorama Plugin for Azure 5.1.1

Table of Contents

Known Issues in the Panorama Plugin for Azure 5.1.1

The following list describes known issues in the Panorama plugin for Azure 5.1.1.

PLUG-13860

When validating credentials using an invalid secret, the process fails. An error message appears displaying extraneous information.

PLUG-13852

Downgrading from version 5.1.1 is not supported. Palo Alto Networks recommends that you uninstall version 5.1.1 and install the desired version. When downgrading to a previous version the displayed error message could be misleading. Ignore this error message.

FWAAS-9343

If you are pushing security rules in non-cloud device groups to cloud NGFW devices, security rules which are pushed to Target Devices from Panorama are not present in autoscaled Firewalls by default.

PLUG-13661

When a request from the Azure plugin for device group information fails from Panorama, the plugin cannot process IP-tag information. When this issue occurs, the plugin generates the following syslog entry.
Azure plugin: Tags used in policy was not successfully retrieved, please disable tag pruning from CLI.
Workaround: If you receive this syslog entry shown above, disable tag pruning to retrieve IP tags. Use the following command to disable tag pruning.
request plugins azure set-tag-pruning-flag value False
On a High Availability Panorama setup, the tag pruning CLI commands must be configured on both the HA peers.