PaloAltoNetworks / terraform-aws-vmseries-modules

Terraform Reusable Modules for VM-Series on AWS
https://registry.terraform.io/modules/PaloAltoNetworks/vmseries-modules/aws
MIT License
40 stars 48 forks source link

bootstrap with s3 storage over a private link not working #348

Closed achhabr1 closed 11 months ago

achhabr1 commented 1 year ago

Describe the bug

I am trying to bootstrap a VM300 on 10.2.3 with a s3 storage over a Private End point. The virtual firewall seems to be picking up license keys, but ignoring init-config.txt and bootstrap.xml files.

Module Version

current

Terraform version

Terraform v1.5.3

Expected behavior

Firewall should pickup hostname and accept the password given bootstrap.xml

Current behavior

PA-VM login:

stuck at this state

Anything else to add?

logs `PA-VM login: 2023-07-20 14:24:20.283 -0700 INFO: Media detected, Starting media sanity check 2023-07-20 14:24:20.594 -0700 INFO: Bootstrap media sanity check passed 2023-07-20 14:24:20.597 -0700 INFO: btsErrorMgmtReady: System upgrade state: management_ready, skip upgrade mode(9) DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 2023-07-20 14:25:32.896 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/PAN-dns.key 2023-07-20 14:25:34.179 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/PAN-support.key 2023-07-20 14:25:35.441 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/gpgateway.key 2023-07-20 14:25:41.203 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/pa-vm.key 2023-07-20 14:25:42.333 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/threats.key 2023-07-20 14:25:43.272 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/url3.key 2023-07-20 14:25:44.224 -0700 INFO: Successfully installed license key for file /opt/pancfg/mgmt/bootstrap/wildfire.key [ 179.671539] BUG: unable to handle kernel NULL pointer dereference at 0000000000000000 [ 179.674873] PGD 0 P4D 0 [ 179.676038] Oops: 0010 [#1] SMP PTI [ 179.677590] CPU: 0 PID: 9471 Comm: cfgif-hotplug Tainted: G OE --------- -t - 4.18.0-240.1.1.20.pan.x86_64 #1 [ 179.772500] Hardware name: Amazon EC2 m5.xlarge/, BIOS 1.0 10/16/2017 [ 179.775418] RIP: 0010:0x0 [ 179.776641] Code: Bad RIP value. [ 179.778237] RSP: 0018:ffffba0a44f2bbf8 EFLAGS: 00010096 [ 179.870405] RAX: ffff973546263d80 RBX: 0000000000000000 RCX: 0000000000000000 [ 179.873524] RDX: 0000000000000000 RSI: 0000000000000009 RDI: ffff97381b9a5200 [ 179.876531] RBP: 0000000000000000 R08: 000068cb40000000 R09: 0000000000003bc1 [ 179.970935] R10: 00000000000002c7 R11: 00000000fa83b2da R12: 0000000000000000 [ 179.973961] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000001030000 [ 179.977086] FS: 00007fd1f26fdb80(0000) GS:ffff97385d200000(0000) knlGS:0000000000000000 [ 180.071416] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 180.073980] CR2: ffffffffffffffd6 CR3: 0000000150f18001 CR4: 00000000007606f0 [ 180.077229] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 180.171057] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 [ 180.174197] PKRU: 55555554 [ 180.175636] Call Trace: [ 180.176791] ? preempt_schedule_common+0xa/0x20 [ 180.182608] ? _cond_resched+0x1d/0x30 [ 180.273707] ? kmalloc+0x16e/0x200 [ 180.278844] ? ext4_htree_store_dirent+0x35/0x100 [ 180.284814] ? ext4_htree_store_dirent+0x35/0x100 [ 180.290765] ? htree_dirblock_to_tree+0xc7/0x1d0 [ 180.296676] ? ext4_htree_fill_tree+0x256/0x2d0 [ 180.374333] ? ext4_readdir+0x618/0x8d0 [ 180.379851] ? iterate_dir+0x13c/0x190 [ 180.385224] ? ksys_getdents64+0x9c/0x130 [ 180.390544] ? iterate_dir+0x190/0x190 [ 180.395720] ? x64_sys_getdents64+0x16/0x20 [ 180.473800] ? do_syscall_64+0x5b/0x1d0 [ 180.478995] ? entry_SYSCALL_64_after_hwframe+0x65/0xca [ 180.484901] Modules linked in: 8021q garp mrp stp llc ip6_tables ip_tables xt_state xt_conntrack nft_chain_nat nf_nat nft_counter xt_CT nft_compat nf_tables nfnetlink zram nf_conntrack_tftp nf_conntrack_ftp nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 vsock_loopback vmw_vsock_virtio_transport_common vmw_vsock_vmci_transport vsock rte_kni(OE) mlx5_ib(OE) ib_uverbs(OE) ib_core(OE) mlx5_core(OE) tls(t) mlxfw(OE) mlx_compat(OE) igb_uio(OE) uio_pci_generic(E) uio(E) binfmt_misc nfsd dm_mod video sbs sbshc nfit libnvdimm ec_sys custom_method acpi_tad acpi_ipmi ipmi_devintf ipmi_msghandler ppdev parport_pc parport pcspkr ena i2c_piix4 [ 180.810142] CR2: 0000000000000000 [ 180.815156] ---[ end trace 77add5ea1af1eb8b ]--- [ 180.820675] RIP: 0010:0x0 [ 180.825382] Code: Bad RIP value. [ 180.830325] RSP: 0018:ffffba0a44f2bbf8 EFLAGS: 00010096 [ 180.836319] RAX: ffff973546263d80 RBX: 0000000000000000 RCX: 0000000000000000 [ 180.875607] RDX: 0000000000000000 RSI: 0000000000000009 RDI: ffff97381b9a5200 [ 180.882291] RBP: 0000000000000000 R08: 000068cb40000000 R09: 0000000000003bc1 Booting 'PANOS (sysroot0)'

[ 0.000000] Linux version 4.18.0-240.1.1.20.pan.x86_64 (build@5e3575dd1ddc) (gcc version 8.3.1 20191121 (Red Hat 8.3.1-5) (GCC)) #1 SMP Wed Mar 16 10:30:07 PDT 2022 [ 0.000000] Command line: ro root=/dev/sda2 init=/sbin/init_single_core console=tty0 console=ttyS0,9600n8 alternate_root=/dev/vda2 alternate_root=/dev/xvda2 hugepages=0 alternate_root=/dev/nvme0n1p2 [ 0.000000] x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x008: 'MPX bounds registers' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x010: 'MPX CSR' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x020: 'AVX-512 opmask' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x040: 'AVX-512 Hi256' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x080: 'AVX-512 ZMM_Hi256' [ 0.000000] x86/fpu: Supporting XSAVE feature 0x200: 'Protection Keys User registers'

[ 0.000000] x86/fpu: Enabled xstate features 0x2ff, context size is 2568 bytes, using 'compacted' format. [ 0.000000] BIOS-provided physical RAM map: [ 0.000000] BIOS-e820: [mem 0x0000000000000000-0x000000000009fbff] usable [ 0.000000] BIOS-e820: [mem 0x000000000009fc00-0x000000000009ffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000000100000-0x00000000bffe9fff] usable [ 0.000000] BIOS-e820: [mem 0x00000000bffea000-0x00000000bfffffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000e0000000-0x00000000e03fffff] reserved [ 0.000000] BIOS-e820: [mem 0x00000000fffc0000-0x00000000ffffffff] reserved [ 0.000000] BIOS-e820: [mem 0x0000000100000000-0x000000042d3fffff] usable [ 0.000000] BIOS-e820: [mem 0x000000042d400000-0x000000043fffffff] reserved [ 0.000000] NX (Execute Disable) protection: active [ 0.000000] SMBIOS 2.7 present. [ 0.000000] DMI: Amazon EC2 m5.xlarge/, BIOS 1.0 10/16/2017 [ 0.000000] Hypervisor detected: KVM [ 0.000000] kvm-clock: Using msrs 4b564d01 and 4b564d00 [ 0.000000] kvm-clock: cpu 0, msr 2fcdc1001, primary cpu clock [ 0.000000] kvm-clock: using sched offset of 6730399264 cycles [ 0.000000] clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns [ 0.000000] tsc: Detected 2499.998 MHz processor [ 0.000000] last_pfn = 0x42d400 max_arch_pfn = 0x400000000 [ 0.000000] x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT
[ 0.000000] last_pfn = 0xbffea max_arch_pfn = 0x400000000 [ 0.000000] Using GB pages for direct mapping [ 0.000000] ACPI: Early table checksum verification disabled [ 0.000000] ACPI: RSDP 0x00000000000F8F40 000014 (v00 AMAZON) [ 0.000000] ACPI: RSDT 0x00000000BFFEE260 000044 (v01 AMAZON AMZNRSDT 00000001 AMZN 00000001) [ 0.000000] ACPI: FACP 0x00000000BFFEFF80 000074 (v01 AMAZON AMZNFACP 00000001 AMZN 00000001) [ 0.000000] ACPI: DSDT 0x00000000BFFEE2B0 0010E9 (v01 AMAZON AMZNDSDT 00000001 AMZN 00000001) [ 0.000000] ACPI: FACS 0x00000000BFFEFF40 000040 [ 0.000000] ACPI: SSDT 0x00000000BFFEF600 00093C (v01 AMAZON AMZNSSDT 00000001 AMZN 00000001) [ 0.000000] ACPI: APIC 0x00000000BFFEF500 000086 (v01 AMAZON AMZNAPIC 00000001 AMZN 00000001) [ 0.000000] ACPI: SRAT 0x00000000BFFEF440 0000C0 (v01 AMAZON AMZNSRAT 00000001 AMZN 00000001) [ 0.000000] ACPI: SLIT 0x00000000BFFEF3D0 00006C (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) [ 0.000000] ACPI: WAET 0x00000000BFFEF3A0 000028 (v01 AMAZON AMZNWAET 00000001 AMZN 00000001) [ 0.000000] ACPI: HPET 0x00000000000C9000 000038 (v01 AMAZON AMZNHPET 00000001 AMZN 00000001) [ 0.000000] ACPI: SSDT 0x00000000000C9040 00007B (v01 AMAZON AMZNSSDT 00000001 AMZN 00000001) [ 0.000000] SRAT: PXM 0 -> APIC 0x00 -> Node 0 [ 0.000000] SRAT: PXM 0 -> APIC 0x01 -> Node 0 [ 0.000000] SRAT: PXM 0 -> APIC 0x02 -> Node 0 [ 0.000000] SRAT: PXM 0 -> APIC 0x03 -> Node 0 [ 0.000000] ACPI: SRAT: Node 0 PXM 0 [mem 0x00000000-0xbfffffff] [ 0.000000] ACPI: SRAT: Node 0 PXM 0 [mem 0x100000000-0x43fffffff] [ 0.000000] NUMA: Node 0 [mem 0x00000000-0xbfffffff] + [mem 0x100000000-0x42d3fffff] -> [mem 0x00000000-0x42d3fffff] [ 0.000000] NODE_DATA(0) allocated [mem 0x42d3d4000-0x42d3fefff] [ 0.000000] Zone ranges: [ 0.000000] DMA [mem 0x0000000000001000-0x0000000000ffffff] [ 0.000000] DMA32 [mem 0x0000000001000000-0x00000000ffffffff] [ 0.000000] Normal [mem 0x0000000100000000-0x000000042d3fffff] [ 0.000000] Device empty [ 0.000000] Movable zone start for each node [ 0.000000] Early memory node ranges [ 0.000000] node 0: [mem 0x0000000000001000-0x000000000009efff] [ 0.000000] node 0: [mem 0x0000000000100000-0x00000000bffe9fff] [ 0.000000] node 0: [mem 0x0000000100000000-0x000000042d3fffff] [ 0.000000] Zeroed struct page in unavailable ranges: 11384 pages [ 0.000000] Initmem setup node 0 [mem 0x0000000000001000-0x000000042d3fffff] [ 0.000000] ACPI: PM-Timer IO Port: 0xb008 [ 0.000000] ACPI: LAPIC_NMI (acpi_id[0xff] dfl dfl lint[0x1]) [ 0.000000] IOAPIC[0]: apic_id 0, version 32, address 0xfec00000, GSI 0-23 [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 5 global_irq 5 high level) [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 high level) [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 10 global_irq 10 high level) [ 0.000000] ACPI: INT_SRC_OVR (bus 0 bus_irq 11 global_irq 11 high level) [ 0.000000] Using ACPI (MADT) for SMP configuration information [ 0.000000] ACPI: HPET id: 0x8086a201 base: 0xfed00000 [ 0.000000] smpboot: Allowing 4 CPUs, 0 hotplug CPUs [ 0.000000] PM: Registered nosave memory: [mem 0x00000000-0x00000fff] [ 0.000000] PM: Registered nosave memory: [mem 0x0009f000-0x0009ffff] [ 0.000000] PM: Registered nosave memory: [mem 0x000a0000-0x000effff] [ 0.000000] PM: Registered nosave memory: [mem 0x000f0000-0x000fffff] [ 0.000000] PM: Registered nosave memory: [mem 0xbffea000-0xbfffffff] [ 0.000000] PM: Registered nosave memory: [mem 0xc0000000-0xdfffffff] [ 0.000000] PM: Registered nosave memory: [mem 0xe0000000-0xe03fffff] [ 0.000000] PM: Registered nosave memory: [mem 0xe0400000-0xfffbffff] [ 0.000000] PM: Registered nosave memory: [mem 0xfffc0000-0xffffffff] [ 0.000000] [mem 0xc0000000-0xdfffffff] available for PCI devices [ 0.000000] Booting paravirtualized kernel on KVM [ 0.000000] clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns [ 0.000000] setup_percpu: NR_CPUS:8192 nr_cpumask_bits:4 nr_cpu_ids:4 nr_node_ids:1 [ 0.000000] percpu: Embedded 52 pages/cpu s172952 r8192 d31848 u524288 [ 0.000000] KVM setup async PF for cpu 0 [ 0.000000] kvm-stealtime: cpu 0, msr 41d216340 [ 0.000000] Built 1 zonelists, mobility grouping on. Total pages: 4053027 [ 0.000000] Policy zone: Normal [ 0.000000] Kernel command line: ro root=/dev/sda2 init=/sbin/init_single_core console=tty0 console=ttyS0,9600n8 alternate_root=/dev/vda2 alternate_root=/dev/xvda2 hugepages=0 alternate_root=/dev/nvme0n1p2 [ 0.000000] Specific versions of hardware are certified with Red Hat Enterprise Linux 8. Please see the list of hardware certified with Red Hat Enterprise Linux 8 at https://catalog.redhat.com. [ 0.000000] Memory: 3210700K/16469536K available (14341K kernel code, 2661K rwdata, 4976K rodata, 2504K init, 4652K bss, 362272K reserved, 0K cma-reserved) [ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1 [ 0.000000] Kernel/User page tables isolation: enabled [ 0.000000] ftrace: allocating 44852 entries in 176 pages [ 0.000000] ftrace: allocated 176 pages with 3 groups [ 0.001000] rcu: Hierarchical RCU implementation. [ 0.001000] rcu: RCU restricting CPUs from NR_CPUS=8192 to nr_cpu_ids=4. [ 0.001000] rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. [ 0.001000] rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=4 [ 0.001000] NR_IRQS: 524544, nr_irqs: 456, preallocated irqs: 16 [ 0.001000] random: crng done (trusting CPU's manufacturer) [ 0.001000] Console: colour VGA+ 80x25 [ 0.001000] printk: console [tty0] enabled [ 0.001000] printk: console [ttyS0] enabled [ 0.001000] ACPI: Core revision 20200110 [ 0.001000] clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 30580167144 ns [ 0.001000] APIC: Switch to symmetric I/O mode setup [ 0.001000] x2apic enabled [ 0.001000] Switched APIC routing to physical x2apic. [ 0.001000] clocksource: tsc-early: mask: 0xffffffffffffffff max_cycles: 0x240937b9988, max_idle_ns: 440795218083 ns [ 0.001000] Calibrating delay loop (skipped) preset value.. 4999.99 BogoMIPS (lpj=2499998) [ 0.001000] pid_max: default: 32768 minimum: 301 [ 0.001000] Security Framework initialized [ 0.001000] Yama: becoming mindful. [ 0.001000] AppArmor: AppArmor initialized [ 0.001000] Dentry cache hash table entries: 2097152 (order: 12, 16777216 bytes) [ 0.001000] Inode-cache hash table entries: 1048576 (order: 11, 8388608 bytes) [ 0.001000] Mount-cache hash table entries: 32768 (order: 6, 262144 bytes) [ 0.001000] Mountpoint-cache hash table entries: 32768 (order: 6, 262144 bytes) [ 0.001000] Last level iTLB entries: 4KB 64, 2MB 8, 4MB 8 [ 0.001000] Last level dTLB entries: 4KB 64, 2MB 0, 4MB 0, 1GB 4 [ 0.001000] FEATURE SPEC_CTRL Not Present [ 0.001000] FEATURE IBPB_SUPPORT Not Present [ 0.001000] Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization [ 0.001000] Spectre V2 : Mitigation: Full generic retpoline [ 0.001000] Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch [ 0.001000] Speculative Store Bypass: Vulnerable [ 0.001000] MDS: Vulnerable: Clear CPU buffers attempted, no microcode [ 0.001000] Freeing SMP alternatives memory: 44K [ 0.001000] smpboot: CPU0: Intel(R) Xeon(R) Platinum 8259CL CPU @ 2.50GHz (family: 0x6, model: 0x55, stepping: 0x7) [ 0.001117] Performance Events: unsupported p6 CPU model 85 no PMU driver, software events only. [ 0.002052] rcu: Hierarchical SRCU implementation. [ 0.003711] NMI watchdog: Perf NMI watchdog permanently disabled [ 0.004075] smp: Bringing up secondary CPUs ... [ 0.005108] x86: Booting SMP configuration: [ 0.006004] .... node #0, CPUs: #1 [ 0.001000] kvm-clock: cpu 1, msr 2fcdc1041, secondary cpu clock [ 0.008098] KVM setup async PF for cpu 1 [ 0.009000] kvm-stealtime: cpu 1, msr 41d296340 [ 0.100103] #2 [ 0.001000] kvm-clock: cpu 2, msr 2fcdc1081, secondary cpu clock [ 0.102246] KVM setup async PF for cpu 2 [ 0.103000] kvm-stealtime: cpu 2, msr 41d316340 [ 0.118090] MDS CPU bug present and SMT on, data leak possible. See https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html for more details. [ 0.120122] #3 [ 0.001000] kvm-clock: cpu 3, msr 2fcdc10c1, secondary cpu clock [ 0.121637] KVM setup async PF for cpu 3 [ 0.122000] kvm-stealtime: cpu 3, msr 41d396340 [ 0.217012] smp: Brought up 1 node, 4 CPUs [ 0.218003] smpboot: Max logical packages: 1 [ 0.219003] smpboot: Total of 4 processors activated (19999.98 BogoMIPS) [ 0.247087] node 0 deferred pages initialised in 27ms [ 0.248538] devtmpfs: initialized [ 0.253050] x86/mm: Memory block size: 128MB [ 0.259101] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns [ 0.318019] futex hash table entries: 1024 (order: 4, 65536 bytes) [ 0.325087] pinctrl core: initialized pinctrl subsystem [ 0.330159] PM: RTC time: 21:26:52, date: 2023-07-20 [ 0.336129] NET: Registered protocol family 16 [ 0.413115] audit: initializing netlink subsys (disabled) [ 0.419018] audit: type=2000 audit(1689888408.272:1): state=initialized audit_enabled=0 res=1 [ 0.430006] cpuidle: using governor menu [ 0.435153] ACPI: bus type PCI registered [ 0.513009] acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 [ 0.519050] dca service started, version 1.12.1 [ 0.525067] PCI: Using configuration type 1 for base access [ 0.532660] HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages [ 0.613008] HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages [ 0.620063] ACPI: Added _OSI(Module Device) [ 0.626004] ACPI: Added _OSI(Processor Device) [ 0.711008] ACPI: Added _OSI(3.0 _SCP Extensions) [ 0.717003] ACPI: Added _OSI(Processor Aggregator Device) [ 0.723004] ACPI: Added _OSI(Linux-Dell-Video) [ 0.728004] ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) [ 0.734008] ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) [ 0.812742] ACPI: 3 ACPI AML tables successfully acquired and loaded [ 0.820028] ACPI: Interpreter enabled [ 0.825013] ACPI: (supports S0 S4 S5) [ 0.922009] ACPI: Using IOAPIC for interrupt routing [ 0.928026] PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug [ 0.939320] ACPI: Enabled 16 GPEs in block 00 to 0F [ 0.947039] ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) [ 1.011009] acpi PNP0A03:00: _OSC: OS supports [ASPM ClockPM Segments MSI HPX-Type3] [ 1.022010] acpi PNP0A03:00: fail to add MMCONFIG information, can't access extended PCI configuration space under this bridge. [ 1.115294] acpiphp: Slot [3] registered [ 1.121025] acpiphp: Slot [4] registered [ 1.126017] acpiphp: Slot [5] registered [ 1.131017] acpiphp: Slot [6] registered [ 1.136019] acpiphp: Slot [7] registered [ 1.209022] acpiphp: Slot [8] registered [ 1.214016] acpiphp: Slot [9] registered [ 1.220016] acpiphp: Slot [10] registered [ 1.225016] acpiphp: Slot [11] registered [ 1.230016] acpiphp: Slot [12] registered [ 1.235018] acpiphp: Slot [13] registered [ 1.309021] acpiphp: Slot [14] registered [ 1.314017] acpiphp: Slot [15] registered [ 1.320016] acpiphp: Slot [16] registered [ 1.325016] acpiphp: Slot [17] registered [ 1.330016] acpiphp: Slot [18] registered [ 1.409021] acpiphp: Slot [19] registered [ 1.414016] acpiphp: Slot [20] registered [ 1.419016] acpiphp: Slot [21] registered [ 1.424016] acpiphp: Slot [22] registered [ 1.430018] acpiphp: Slot [23] registered [ 1.508021] acpiphp: Slot [24] registered [ 1.513017] acpiphp: Slot [25] registered [ 1.519016] acpiphp: Slot [26] registered [ 1.524016] acpiphp: Slot [27] registered [ 1.529016] acpiphp: Slot [28] registered [ 1.607019] acpiphp: Slot [29] registered [ 1.613016] acpiphp: Slot [30] registered [ 1.618017] acpiphp: Slot [31] registered [ 1.623014] PCI host bridge to bus 0000:00 [ 1.629004] pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] [ 1.708006] pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] [ 1.714003] pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff window] [ 1.724003] pci_bus 0000:00: root bus resource [mem 0xc0000000-0xfebfffff window] [ 1.811011] pci_bus 0000:00: root bus resource [bus 00-ff] [ 1.817045] pci 0000:00:00.0: [8086:1237] type 00 class 0x060000 [ 1.823412] pci 0000:00:01.0: [8086:7000] type 00 class 0x060100 [ 1.907123] pci 0000:00:01.3: [8086:7113] type 00 class 0x000000 [ 1.914865] pci 0000:00:01.3: quirk: [io 0xb000-0xb03f] claimed by PIIX4 ACPI [ 1.924019] pci 0000:00:01.3: quirk: [io 0xb100-0xb10f] claimed by PIIX4 SMB [ 1.931067] pci 0000:00:01.3: PIIX4 devres E PIO at fff0-ffff [ 2.007023] pci 0000:00:01.3: PIIX4 devres F MMIO at ffc00000-ffffffff [ 2.013021] pci 0000:00:01.3: PIIX4 devres G PIO at fff0-ffff [ 2.019019] pci 0000:00:01.3: PIIX4 devres H MMIO at ffc00000-ffffffff [ 2.106021] pci 0000:00:01.3: PIIX4 devres I PIO at fff0-ffff [ 2.112022] pci 0000:00:01.3: PIIX4 devres J PIO at fff0-ffff [ 2.118006] pci 0000:00:01.3: quirk_piix4_acpi+0x0/0x170 took 198242 usecs [ 2.205286] pci 0000:00:03.0: [1d0f:1111] type 00 class 0x030000 [ 2.212644] pci 0000:00:03.0: reg 0x10: [mem 0xfe000000-0xfe3fffff pref] [ 2.221004] pci 0000:00:03.0: reg 0x30: [mem 0xfeb90000-0xfeb9ffff pref] [ 2.227335] pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 [ 2.307006] pci 0000:00:04.0: reg 0x10: [mem 0xfebe0000-0xfebe3fff] [ 2.317557] pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 [ 2.325005] pci 0000:00:05.0: reg 0x10: [mem 0xfebe4000-0xfebe7fff] [ 2.407005] pci 0000:00:05.0: reg 0x18: [mem 0xfe400000-0xfe4fffff pref] [ 2.415005] pci 0000:00:05.0: reg 0x20: [mem 0xfeba0000-0xfebaffff] [ 2.423531] pci 0000:00:06.0: [1d0f:ec20] type 00 class 0x020000 [ 2.504005] pci 0000:00:06.0: reg 0x10: [mem 0xfebe8000-0xfebebfff] [ 2.513005] pci 0000:00:06.0: reg 0x18: [mem 0xfe500000-0xfe5fffff pref] [ 2.521004] pci 0000:00:06.0: reg 0x20: [mem 0xfebb0000-0xfebbffff] [ 2.529504] pci 0000:00:07.0: [1d0f:ec20] type 00 class 0x020000 [ 2.605005] pci 0000:00:07.0: reg 0x10: [mem 0xfebec000-0xfebeffff] [ 2.612728] pci 0000:00:07.0: reg 0x18: [mem 0xfe600000-0xfe6fffff pref] [ 2.620728] pci 0000:00:07.0: reg 0x20: [mem 0xfebc0000-0xfebcffff] [ 2.705401] pci 0000:00:08.0: [1d0f:ec20] type 00 class 0x020000 [ 2.712000] pci 0000:00:08.0: reg 0x10: [mem 0xfebf0000-0xfebf3fff] [ 2.720682] pci 0000:00:08.0: reg 0x18: [mem 0xfe700000-0xfe7fffff pref] [ 2.804004] pci 0000:00:08.0: reg 0x20: [mem 0xfebd0000-0xfebdffff] [ 2.813088] ACPI: PCI Interrupt Link [LNKA] (IRQs 5 10 11) [ 2.818102] ACPI: PCI Interrupt Link [LNKB] (IRQs 5 10 11) [ 2.824096] ACPI: PCI Interrupt Link [LNKC] (IRQs 5 10 11) [ 2.901104] ACPI: PCI Interrupt Link [LNKD] (IRQs 5 10 11) [ 2.908049] ACPI: PCI Interrupt Link [LNKS] (IRQs *9) [ 2.914038] iommu: Default domain type: Passthrough [ 2.915026] pci 0000:00:03.0: vgaarb: setting as boot VGA device [ 2.916000] pci 0000:00:03.0: vgaarb: VGA device added: decodes=io+mem,owns=io+mem,locks=none [ 2.916007] pci 0000:00:03.0: vgaarb: bridge control possible [ 2.917003] vgaarb: loaded [ 2.918095] SCSI subsystem initialized [ 2.919049] ACPI: bus type USB registered [ 2.920000] usbcore: registered new interface driver usbfs [ 2.930010] usbcore: registered new interface driver hub [ 2.936002] usbcore: registered new device driver usb [ 3.018033] pps_core: LinuxPPS API ver. 1 registered [ 3.024003] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti giometti@linux.it [ 3.035006] PTP clock support registered [ 3.040032] EDAC MC: Ver: 3.0.0 [ 3.118037] PCI: Using ACPI for IRQ routing [ 3.123266] NetLabel: Initializing [ 3.128002] NetLabel: domain hash size = 128 [ 3.134002] NetLabel: protocols = UNLABELED CIPSOv4 CALIPSO [ 3.139017] NetLabel: unlabeled traffic allowed by default [ 3.218128] hpet0: at MMIO 0xfed00000, IRQs 2, 8, 0, 0, 0, 0, 0, 0 [ 3.224005] hpet0: 8 comparators, 32-bit 62.500000 MHz counter [ 3.232049] clocksource: Switched to clocksource kvm-clock [ 3.470858] AppArmor: AppArmor Filesystem Enabled [ 3.476427] pnp: PnP ACPI init [ 3.481786] pnp: PnP ACPI: found 5 devices [ 3.493795] clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns [ 3.504562] pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] [ 3.517706] pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] [ 3.523736] pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff window] [ 3.530327] pci_bus 0000:00: resource 7 [mem 0xc0000000-0xfebfffff window] [ 3.617764] NET: Registered protocol family 2 [ 3.623224] tcp_listen_portaddr_hash hash table entries: 8192 (order: 5, 131072 bytes) [ 3.633779] TCP established hash table entries: 131072 (order: 8, 1048576 bytes) [ 3.721195] TCP bind hash table entries: 65536 (order: 8, 1048576 bytes) [ 3.727851] TCP: Hash tables configured (established 131072 bind 65536) [ 3.734207] UDP hash table entries: 8192 (order: 6, 262144 bytes) [ 3.817095] UDP-Lite hash table entries: 8192 (order: 6, 262144 bytes) [ 3.823564] NET: Registered protocol family 1 [ 3.829048] RPC: Registered named UNIX socket transport module. [ 3.835139] RPC: Registered udp transport module. [ 3.916837] RPC: Registered tcp transport module. [ 3.922279] RPC: Registered tcp NFSv4.1 backchannel transport module. [ 3.928591] pci 0000:00:00.0: Limiting direct PCI/PCI transfers [ 3.934674] pci 0000:00:01.0: Activating ISA DMA hang workarounds [ 4.017551] pci 0000:00:01.0: quirk_isa_dma_hangs+0x0/0x30 took 80930 usecs [ 4.024174] pci 0000:00:03.0: Video device with shadowed ROM at [mem 0x000c0000-0x000dffff] [ 4.034594] pci 0000:00:03.0: pci_fixup_video+0x0/0x110 took 10222 usecs [ 4.117970] PCI: CLS 0 bytes, default 64 [ 4.123191] PCI-DMA: Using software bounce buffering for IO (SWIOTLB) [ 4.129716] software IO TLB: mapped [mem 0xbbfea000-0xbffea000] (64MB) [ 4.217303] RAPL PMU: API unit is 2^-32 Joules, 0 fixed counters, 10737418240 ms ovfl timer [ 4.228040] clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x240937b9988, max_idle_ns: 440795218083 ns [ 4.239198] clocksource: Switched to clocksource tsc [ 4.319072] Initialise system trusted keyrings [ 4.324713] Key type blacklist registered [ 4.330106] workingset: timestamp_bits=36 max_order=22 bucket_order=0 [ 4.337334] zbud: loaded [ 4.416508] NFS: Registering the id_resolver key type [ 4.422133] Key type id_resolver registered [ 4.427611] Key type id_legacy registered [ 4.432955] nfs4filelayout_init: NFSv4 File Layout Driver Registering... [ 4.439298] pstore: using deflate compression [ 4.517114] Platform Keyring initialized [ 4.551956] NET: Registered protocol family 38 [ 4.557367] Key type asymmetric registered [ 4.562626] Asymmetric key parser 'x509' registered [ 4.616444] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 246) [ 4.626740] io scheduler mq-deadline registered [ 4.632318] io scheduler kyber registered [ 4.637597] io scheduler bfq registered [ 4.642851] atomic64_test: passed for x86-64 platform with CX8 and with SSE [ 4.718214] input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input0 [ 4.728646] ACPI: Power Button [PWRF] [ 4.733842] input: Sleep Button as /devices/LNXSYSTM:00/LNXSLPBN:00/input/input1 [ 4.821062] ACPI: Sleep Button [SLPF] [ 4.826649] ioatdma: Intel(R) QuickData Technology Driver 5.00 [ 4.832750] Serial: 8250/16550 driver, 20 ports, IRQ sharing enabled [ 4.862373] 00:04: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A [ 4.922874] Non-volatile memory driver v1.3 [ 4.928525] Linux agpgart interface v0.103 [ 4.933894] i2c /dev entries driver [ 4.938923] pan_gpio_init: dev not found [ 5.016695] pan_gpio_init: skipping gpio 181 - ret -517 [ 5.116298] pan_gpio_init: skipping gpio 182 - ret -517 [ 5.121989] Loading PAN platform type [ 5.127477] cpld: cpld Test after platform_get_resource() res->start = 1536 [ 5.133923] cpld: cpld: Found cpld chip with rev ID=0xff [ 5.216833] Guest personality initialized and is inactive [ 5.222619] VMCI host device registered (name=vmci, major=10, minor=62) [ 5.229099] Initialized host personality [ 5.234408] rdac: device handler registered [ 5.239743] hp_sw: device handler registered [ 5.317036] emc: device handler registered [ 5.322342] alua: device handler registered [ 5.328100] megaraid cmm: 2.20.2.7 (Release Date: Sun Jul 16 00:01:03 EST 2006) [ 5.338260] megaraid: 2.20.5.1 (Release Date: Thu Nov 16 15:32:35 EST 2006) [ 5.417925] megasas: 07.714.04.00-rh1 [ 5.423021] 3ware 9000 Storage Controller device driver for Linux v2.26.02.014. [ 5.433213] VMware PVSCSI driver - version 1.0.7.0-k [ 5.516508] hv_vmbus: registering driver hv_storvsc [ 5.522277] nvme nvme0: pci function 0000:00:04.0 [ 5.527908] libphy: Fixed MDIO Bus: probed [ 5.528214] PCI Interrupt Link [LNKD] enabled at IRQ 11 [ 5.533366] igb: Intel(R) Gigabit Ethernet Network Driver - version 5.6.0-k [ 5.618015] igb: Copyright (c) 2007-2014 Intel Corporation. [ 5.624164] i40e: Intel(R) 40-10 Gigabit Ethernet Connection Network Driver - version 2.14.13 [ 5.634670] i40e: Copyright(c) 2013 - 2020 Intel Corporation. [ 5.717484] Fusion MPT base driver 3.04.20 [ 5.722813] Copyright (c) 1999-2008 LSI Corporation [ 5.728533] Fusion MPT SPI Host driver 3.04.20 [ 5.734014] Fusion MPT SAS Host driver 3.04.20 [ 5.754217] nvme nvme0: 2/0/0 default/read/poll queues [ 5.816570] Fusion MPT misc device (ioctl) driver 3.04.20 [ 5.824724] nvme0n1: p1 p2 p3 p4 < p5 p6 p7 p8 > [ 5.828366] mptctl: Registered with Fusion MPT base driver [ 5.916672] mptctl: /dev/mptctl @ (major,minor=10,220) [ 5.922426] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver [ 5.928934] ehci-pci: EHCI PCI platform driver [ 5.934369] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver [ 6.017131] ohci-pci: OHCI PCI platform driver [ 6.022486] uhci_hcd: USB Universal Host Controller Interface driver [ 6.028862] usbcore: registered new interface driver uas [ 6.034737] usbcore: registered new interface driver usb-storage [ 6.117324] usbcore: registered new interface driver usbserial_generic [ 6.123787] usbserial: USB Serial support registered for generic [ 6.129890] i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 [ 6.221361] i8042: Warning: Keylock active [ 6.228076] serio: i8042 KBD port at 0x60,0x64 irq 1 [ 6.233815] serio: i8042 AUX port at 0x60,0x64 irq 12 [ 6.239561] mousedev: PS/2 mouse device common for all mice [ 6.317165] rtc_cmos 00:00: RTC can wake from S4 [ 6.323590] rtc_cmos 00:00: registered as rtc0 [ 6.329066] rtc_cmos 00:00: alarms up to one day, 114 bytes nvram [ 6.335100] intel_pstate: P-states controlled by the platform [ 6.416907] sdhci: Secure Digital Host Controller Interface driver [ 6.422994] sdhci: Copyright(c) Pierre Ossman [ 6.428521] sdhci-pltfm: SDHCI platform and OF driver helper [ 6.434540] hidraw: raw HID events driver (C) Jiri Kosina [ 6.517017] usbcore: registered new interface driver usbhid [ 6.522858] usbhid: USB HID core driver [ 6.528330] drop_monitor: Initializing network drop monitor service [ 6.534568] Initializing XFRM netlink socket [ 6.616655] NET: Registered protocol family 10 [ 6.622223] Segment Routing with IPv6 [ 6.627573] NET: Registered protocol family 17 [ 6.633140] Key type dns_resolver registered [ 6.638915] core: Using 32 MCE banks [ 6.716291] RAS: Correctable Errors collector initialized. [ 6.722111] sched_clock: Marking stable (6722097823, 0)->(12500885989, -5778788166) [ 6.732732] registered taskstats version 1 [ 6.738015] Loading compiled-in X.509 certificates [ 6.824601] input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input2 [ 6.847214] Loaded X.509 cert 'PANOS Linux in-tree module signing key: 03223a503609dbba03c4cde39bdcce7fe9256faa' [ 6.858467] Loaded X.509 cert 'CentOS Linux Driver update signing key: 29bd4c0d06d2e9911044b5dc973309139b51d6d5' [ 6.922941] Loaded X.509 cert 'CentOS Linux kpatch signing key: b49f086205909dc4da2cfa99376fb191d2f09e78' [ 6.934199] zswap: loaded using pool lzo/zbud [ 7.017344] Key type big_key registered [ 7.022780] Key type encrypted registered [ 7.028309] AppArmor: AppArmor sha1 policy hashing enabled [ 7.034124] ima: No TPM chip found, activating TPM-bypass! [ 7.039911] ima: Allocated hash algorithm: sha1 [ 7.117671] ima: No architecture policies found [ 7.123304] evm: Initialising EVM extended attributes: [ 7.131253] evm: security.selinux [ 7.136175] evm: security.apparmor [ 7.141161] evm: security.ima [ 7.216651] evm: security.capability [ 7.221699] evm: HMAC attrs: 0x1 [ 7.226882] PM: Magic number: 15:113:450 [ 7.232142] machinecheck: hash matches [ 7.237672] rtc_cmos 00:00: setting system clock to 2023-07-20 21:26:59 UTC (1689888419) [ 7.321866] test 0 [ ok ] [ 7.321869] test 1 [ ok ] [ 7.326767] test 2 [ ok ] [ 7.570853] input: ImPS/2 Generic Wheel Mouse as /devices/platform/i8042/serio1/input/input4 [ 7.586899] md: Waiting for all devices to be available before autodetect [ 7.593304] md: If you don't use raid, use raid=noautodetect [ 7.617346] md: Autodetecting RAID arrays. [ 7.622616] md: autorun ... [ 7.627538] md: ... autorun DONE. [ 7.632658] Using alternate root: /dev/vda2... [ 7.638069] Using alternate root: /dev/xvda2... [ 7.716666] Using alternate root: /dev/nvme0n1p2... [ 7.723946] EXT4-fs (nvme0n1p2): INFO: recovery required on readonly filesystem [ 7.734071] EXT4-fs (nvme0n1p2): write access will be enabled during recovery [ 7.814153] EXT4-fs (nvme0n1p2): orphan cleanup on readonly fs [ 7.820301] EXT4-fs (nvme0n1p2): 22 orphan inodes deleted [ 7.826348] EXT4-fs (nvme0n1p2): recovery complete [ 7.836226] EXT4-fs (nvme0n1p2): mounted filesystem with ordered data mode. Opts: (null) [ 7.921417] VFS: Mounted root (ext4 filesystem) readonly on device 259:2. [ 7.928105] devtmpfs: mounted [ 7.934234] Freeing unused kernel memory: 2504K [ 7.941014] Write protecting the kernel read-only data: 22528k [ 8.017793] Freeing unused kernel memory: 2008K [ 8.023712] Freeing unused kernel memory: 1168K [ 8.107972] EXT4-fs (nvme0n1p2): re-mounted. Opts: (null) [ 8.139325] EXT4-fs (nvme0n1p2): re-mounted. Opts: (null) Setting affinity to 0x1 INIT: version 2.86 booting mount: /proc/bus/usb: mount point does not exist.

            Welcome to CentOS Linux

Starting udev: /sbin/start_udev: line 235: /proc/sys/kernel/hotplug: No such file or directory [ OK ] Setting clock (utc): Thu Jul 20 14:27:04 PDT 2023 [ OK ] Setting hostname PA-VM: [ OK ] Checking filesystems: Running filesystem check on panrepo: [ OK ] Running filesystem check on sysroot0: [ OK ] Running filesystem check on pancfg: [ OK ] [ OK ] Remounting root filesystem in read-write mode: [ OK ] Enabling local filesystem quotas: quotaon: Warning: No quota format detected in the kernel. [ OK ] rm: cannot remove '/var/run/dpdk/virtaddr': Is a directory rm: cannot remove '/var/run/httpd/htcacheclean': Is a directory rm: cannot remove '/var/run/lock/lockdev': Is a directory rm: cannot remove '/var/run/lock/subsys': Is a directory Enabling /etc/fstab swaps: [ OK ] Calling system activity data collector (sadc) ... INIT: Entering runlevel: 3 Entering non-interactive startup Starting Networking: FIPS-CC Self-Tests Stage-1 begins FIPS-CC Skipping RPMS verification check

[ OK ] Starting syslog-ng-system:[2023-07-20T14:27:31.895866] WARNING: Configuration file format is too old, syslog-ng is running in compatibility mode. Please update it to use the syslog-ng 3.29 format at your time of convenience. To upgrade the configuration, please review the warnings about incompatible changes printed by syslog-ng, and once completed change the @version header at the top of the configuration file; config-version='3.9' [2023-07-20T14:27:31.944734] WARNING: log-fifo-size() works differently starting with syslog-ng 3.22 to avoid dropping flow-controlled messages when log-fifo-size() is misconfigured. From now on, log-fifo-size() only affects messages that are not flow-controlled. (Flow-controlled log paths have the flags(flow-control) option set.) To enable the new behaviour, update the @version string in your configuration and consider lowering the value of log-fifo-size().; [ OK ] Starting rpcbind: [ OK ] Starting pan_hardserver: [ OK ] [ OK ] Skipping sshd: starting with PAN system processes Starting xinetd: [ OK ] Starting ntpd: [ OK ] Starting NFS services: [ OK ] Starting NFS mountd: [ OK ] Starting NFS daemon: [ OK ] Starting RPC idmapd: [ OK ] Starting PAN Software: ksysd device creation with major 254 minor 0 eth0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 9001 inet 10.127.1.4 netmask 255.255.255.0 broadcast 10.127.1.255 inet6 fe80::872:45ff:feb8:ad9 prefixlen 64 scopeid 0x20 ether 0a:72:45:b8:0a:d9 txqueuelen 1000 (Ethernet) RX packets 57 bytes 8231 (8.0 KiB) RX errors 0 dropped 0 overruns 0 frame 0 TX packets 66 bytes 7336 (7.1 KiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

tune2fs -l /dev/nvme6 6081740K [ OK ] Masterd started successfully

PA-VM login: DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 DHCP: new ip 10.127.1.4 : mask 255.255.255.0 `

welcome-to-palo-alto-networks[bot] commented 1 year ago

:tada: Thanks for opening your first issue here! Welcome to the community!

lstadnik commented 1 year ago

please try init-cfg.txt instead of init-config.txt in config folder

sebastianczech commented 11 months ago

we closing that issue, please follow what @lstadnik provided. In case of any errors, feel free to open new issue.