PAN-OS Log Forwarding Setup And Configuration

Sets up and maintains log forwarding for the Panorama rulebase. It can be run when setting up a new instance, or as a periodic job to enforce log forwarding policy. You can either update all rules and override previous profiles, or update only rules that do not have a log forwarding profile configured.


This playbook uses the following sub-playbooks, integrations, and scripts.


  • PAN-OS Commit Configuration


  • Set
  • AreValuesEqual


  • panorama-edit-rule
  • panorama-list-rules

Playbook Inputs

NameDescriptionDefault ValueRequired
log-forwarding-nameThe name of the log-forwarding object that will be attached to all of the rules.log_forwarding_101Required
auto_commitWhether the rule should be committed automatically or manually.yesOptional
pre-post-rulebaseEither the pre-rulebase or post-rulebase, depending on the rule structure.pre-rulebaseRequired
device-groupThe device group to work on.-Optional
override-existing-profilesWhether the log-forwarding profiles that were already defined should be overrode.FalseOptional

Playbook Outputs

There are no outputs for this playbook.

