Import Device Groups and Managed Devices for Panorama

  1. Make sure you receive the first policy revision.

  2. Select the device from the device tree.

  3. Click Import Device Groups and Managed Devices.

    A list of devices to import appears.

  4. Select the devices you want to import.

  5. Configure the Topology options:

    Enable Topology: Collects routing information for building the network Interactive Map.

    Topology options are configured when you import managed devices.

    • Collect dynamic topology information when dynamic addressing (DHCP) or routing protocols (OSPF and BGP) are in use.

  6. Configure the Usage Tracking options:

    • Enable Tracking of Rule Usage - Monitor last hit information for rules in the managed devices being imported.
    • Enable Tracking of Application and User Usage - Monitor last hit information for applications and users in the managed devices being imported.
  7. Click Import.
  8. Do one of the following:
    • Click Reset to update the list of managed devices.
    • Click Done to return to the device tree.

      The managed devices appear in the device tree.

    Topology options to collect routing information for building the network Interactive Map are configured when you import managed devices.

For Palo Alto devices: If a conflict is detected between the name of a management domain (DG) on the Panorama device, and the name of the DG in SecureTrack, you will have to choose whether to Update the name or Ignore the conflict.
After the DG name in SecureTrack is synchronized with the name on the Panorama device, the DG is no longer suggested when you next select devices to import.

With HA clusters, standby devices are not imported. However, the serial ID of the standby devices are saved in the TOS database in case they are needed if the active cluster fails.