PaloAltoNetworks / aws

VM-Series for Amazon Web Services
79 stars 83 forks source link

Portal does not respond to API #10

Closed amjadhalim closed 7 years ago

amjadhalim commented 7 years ago

Hello Narayan I have been doing some tests with PANOS 8.0, but for some reasons lambda is failing to update the portal with gateway address. When I looked at the logs at cloudwatch, I can see the Portal is not responding to api calls:

23:15:41 [INFO] 2017-05-31T23:15:41.36Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: No response from FW. So maybe not up! 23:15:41 [INFO] 2017-05-31T23:15:41.36Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO] FW is not up...yet 23:15:41 [INFO] 2017-05-31T23:15:41.36Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: 2 or more minutes left in lambda function. So will check again in 30s 23:16:11 [INFO] 2017-05-31T23:16:11.59Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: Sending command: https://52.53.60.56/api/?type=op&cmd=1&key=LUFRPT11dEtJM0tPTzVHMnJhelpHUzVDN2k5clpTd0E9TUdXZUpoeG5LOVJXemxuVGZ6VGtKdWNlckU2d2RoK2U2RGRxVU1Oc3VJaz0= 23:16:16 [INFO] 2017-05-31T23:16:16.65Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: No response from FW. So maybe not up! 23:16:16 [INFO] 2017-05-31T23:16:16.65Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO] FW is not up...yet 23:16:16 [INFO] 2017-05-31T23:16:16.65Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: 2 or more minutes left in lambda function. So will check again in 30s 23:16:46 [INFO] 2017-05-31T23:16:46.95Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: Sending command: https://52.53.60.56/api/?type=op&cmd=1&key=LUFRPT11dEtJM0tPTzVHMnJhelpHUzVDN2k5clpTd0E9TUdXZUpoeG5LOVJXemxuVGZ6VGtKdWNlckU2d2RoK2U2RGRxVU1Oc3VJaz0= 23:16:51 [INFO] 2017-05-31T23:16:51.101Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO]: No response from FW. So maybe not up! 23:16:51 [INFO] 2017-05-31T23:16:51.101Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO] FW is not up...yet 23:16:51 [INFO] 2017-05-31T23:16:51.101Z c8af41c8-4656-11e7-9ee6-171ce05b1d29 [INFO] have less than two minutes so call self

I was not able to find out why the API is failing, but tried to run the same API from my laptop and i got a response:

curl -k -g "https://172.16.1.21/api/?type=op&cmd=1&key=LUFRPT14MW5xOEo1R09KVlBZNnpnemh0VHRBOWl6TGM9bXcwM3JHUGVhRlNiY0dCR0srNERUQT09"

2017/05/31 15:47:2715:47:271AutoComFINNOnoOK15:47:420100
Configuration committed successfullySuccessfully committed last configuration
Warning: tunnel tunnel.100 ipv6 is not enabled. IPv6 address will be ingored!(Module: rasmgr)