General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.


Resolved! Where can I find an old Cortex macOS installer?

Hi community.


I need to know where I can find the installer of Cortex XDR for Mac because I have some devices where that old Cortex version is stuck and I can't delete it successfully. Or, if you have another method that can remove that


More disk on panorama in esxi for logs

is this the instructions to use to get more logging space on panorama VM running in panorama mode?


Resolved! Retention period for traffic logs on Panorama

Hello Experts


What is the rention period for traffic logs on Panorama, I mean how many days it will keep the traffic logs from firewall. Actually I need to do the harden the security rules by looking the traffic logs.

ghostrider by L4 Transporter
  • 11 replies

RFC1918 addresses inbound to untrust interface

I have a pair of palos in azure, they are frontheaded by a LB. I also have a VPN gateway in the gateway subnet of the vnet where these components live. Not ideal but I am trying to connect a legacy vWAN hub to a new landing zone. I have a VPN from ol


Resolved! Export/Import Named Configuration Snapshot

Hi everyone!


Can someone confirm that the subject can only be done by "superuser" account?

I can't find any documentation that says so. I'm wondering because "export device state" is visible for superuser account, when using a "device administrator


Resolved! Proxy ID's and routes needed?



If I am building a tunnel to a Policy Based device and I configure Proxy ID's do I need to add routes for the VPN as well on the Palo?


Or just Proxy IDs?

SCEP for firewall device cert?

We do not currently have SCEP set up in our environment nor are we familiar with it. But if we did have it set up would our PA firewalls be able to request a cert that we could then use in a SSL/TLS service profile to have a secure connection between


Claw4609 by L5 Sessionator
  • 1 replies

Resolved! URL Blank in Traffic Logs

The traffic logs for our PAs almost never actually show a URL, despite the URL category getting properly assigned. The only time I ever see a URL show up in the logs is if it is specifically denied because of the URL category, which is fairly rare. I


Resolved! Accessing A New Palo Alto Firewall In The GCP



We have a virtual Palo Alto firewall (BYOL) in the GCP and were able to change password using the initial access and the ppk file.

We provisioned one more VM firewall in same GCP setup, however this time we are unable to recreate the steps w


kgsd2019 by L1 Bithead
  • 7 replies

Resolved! About User-ID Agent



I've been practicing Palo Alto lately, I'm having trouble setting up "User-ID Agent"...
This is my simple structure :

I set up "AD server" and "User-ID Agent" on the same Winserver

I also added Win10 to domain, and gave it an account (michae


  • 24342 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors