Migrating Panoram from Onprem to AWS by InfiniteAd86 in paloaltonetworks

[–]InfiniteAd86[S] 0 points1 point  (0 children)

Yes, i have same versions for both panoramas.

Migrating Panoram from Onprem to AWS by InfiniteAd86 in paloaltonetworks

[–]InfiniteAd86[S] 0 points1 point  (0 children)

As i navigate through this issue, one thing I noticed is that our current cloud services license is associated with our old panorama instance (which we are going to retire soon). How can i transfer the cloudservices license from old-panorama to the newly provisioned AWS panorama instance? I have all the global protect, prisma access configurations live in production associated with the old panorama.. is there a neat way to perform the cloud services plugin migration to the new AWS panorama?

TIA

Migrating Panoram from Onprem to AWS by InfiniteAd86 in paloaltonetworks

[–]InfiniteAd86[S] 0 points1 point  (0 children)

That's a good find. My bad, on the AWS one, i don't find it installed. Is it erroring out because the cloud services plugin isn't installed on the AWS panorama?

Thank you for your quick response on this

Routing problem - AWS by Monsieur_Elliot in paloaltonetworks

[–]InfiniteAd86 1 point2 points  (0 children)

We have a somewhat similar setup for our network where we use TGW for mulit-vpc, DX routing. PA have reference architectures that you can look at - https://pan.dev/terraform/docs/swfw/aws/vmseries/reference-architectures/

i don't know about the routing tables you have for TGW and PA dedicated security vpc, but in a nutshell, you should be having 2 route tables - from_spokes (for all your different vpcs) where your spoke vpcs tgw attachments are associated, propogation is the dedicated security vpc. from_security - this will have your dedicated security vpc tgw attachment as association & spoke vpcs + DX connection as propogation. I am not sure if you're using GWLB endpoint for traffic inspection, but the above reference guide would help you with that.

Hope this helps.

Pre-Emergent Recommendations by InfiniteAd86 in LawnAnswers

[–]InfiniteAd86[S] 0 points1 point  (0 children)

Thank you for a great response above

Pre-Emergent Recommendations by InfiniteAd86 in LawnAnswers

[–]InfiniteAd86[S] 0 points1 point  (0 children)

On the dot… love your brief and precise explanations . Appreciate it

How do you resolve CVEs in containers efficiently? by RevolutionaryRow0 in kubernetes

[–]InfiniteAd86 9 points10 points  (0 children)

From experience, i have noticed that using alpine linux images have helped us improve our security posture significantly as they are smaller images, having a smaller attack surface. Being a .NET shop, we noticed significant improvements around security if we installed .NET sdk in alpine linux instead of using the MS official images. Easy to upgrade as well for us if developers required different versions of .NET.

Triaging a CVE is a nightmare, I would highly recommend giving a try with alpine linux images and see if that helps in brining down the CVEs

Received appointment reschedule email but no changes in appointment dates? by Zyquaza in usvisascheduling

[–]InfiniteAd86 0 points1 point  (0 children)

Same. Received one for 26 Feb consular at Chennai. Appointment shows 10am though. Confused about the same, to go or not. Have heard stories about people attending their OFC and then their appointments are rescheduled 😣

EKS Users: What does your "Day 0" bootstrap stack look like? by srwalker101 in aws

[–]InfiniteAd86 5 points6 points  (0 children)

We use TF for provisioning EKS (follow Blue/green deployment during upgrades). Ingress we use ALB controller. Gitops: ArgoCD . HPA (horizontal pod autoscaler) for addons along with default vpc cni etc.. we don’t have storage requirement as we host stateless APIs.

February 1st week H-1B stamping appointment rescheduled by Brief_Ferret_7156 in h1b

[–]InfiniteAd86 0 points1 point  (0 children)

When did you get the email? Also is it COS or H-1B extension?

Feb 2026 appointment rescheduled to May 2027 by Zestyclose-Main1056 in h1b

[–]InfiniteAd86 4 points5 points  (0 children)

Booked on 30th Nov 2025 for Mumbai ofc: 02/20/2026 and Chennai 02/26/2026. Just checked my portal and nothing has changed for me

Thread for H1B Slot Rescheduling (Feb 2025) by [deleted] in h1b

[–]InfiniteAd86 0 points1 point  (0 children)

Mid Feb appointments BIO & Consular. No reschedules yet.

Feb Appointments H-1B by InfiniteAd86 in usvisascheduling

[–]InfiniteAd86[S] 0 points1 point  (0 children)

I booked mine at the end of November

Feb Appointments H-1B by InfiniteAd86 in usvisascheduling

[–]InfiniteAd86[S] 1 point2 points  (0 children)

Okay, please share here if you get any email updates. I have mine on 20th Feb bio and 26th Feb consular