PaloAltoNetworks / aws-transit-vpc

automated AWS transit vpc
41 stars 34 forks source link

AMI Issues / EULA Issue? #70

Open brianfrye81 opened 4 years ago

brianfrye81 commented 4 years ago

This does not have correct AMIs and fails deployment now. Have to update the AMI's manually.

Also having an issue after updating the AMI, it starts to deploy, but CF gets to "associatePAGroupNode1EIP and 2EIP" hangs and fails. I deployed an instance from the marketplace, but I don't see any EULA to accept, not sure if I'm missing something there. I have deployed a Palo into this before, so I don't think it's the EULA.

brianfrye81 commented 4 years ago

updated AMI to 9.1 ami-0619acd2e9d26ea1e us-east-1 bundle 1 (I believe it's bundle one, run the aws cli to check)

This script however does not work with the newer firmware 10.0. I'm not sure why that's an issue?

brianfrye81 commented 4 years ago

And unfortunately just updating the AMI didn't seem to work. It did deploy one PA, but I can't login. Seems like bootstrapping didn't work? The config file in there does say version 8 in the xml.

If anyone can take a look and maybe there is an easy update here to get this to deploy correctly?