General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

User-ID with Azure AD

We currently use User-ID with an on-premise Active Directory server. We are planning on moving to Azure AD (not to be confused with AD services in Azure).  Are there any plan on getting User-ID to work with AzureAD (web Auth)? What other options can

...

jharlow by L3 Networker
  • 6886 Views
  • 8 replies
  • 0 Likes

Resolved! Version 7.1 for PA-850

Is there a way of getting 7.1 onto an 850? Need to get new firewall into service soon, ideally managed by Panorama. Panorama is on 7.1 and it seems cannot communicate with the 850 as it has shipped with 8.0. Won't be able to get Panorama upgraded in

...

Minemeld RBAC

Are there any plans to incorporate RBAC? There is a use-case for having different teams manage different miners (think manual entries) to a consolidated output node.

jchitsaz by L1 Bithead
  • 2535 Views
  • 0 replies
  • 1 Likes

Catchall DNS and Redirect to host

My old firewall was able to catch all dns requests from a zone and redirect them to a defined server.  I cannot find a way to do that on the Palo Alto. Can it be done?

Limit bandwith in untrust interface

Hi,

 

I need to limit the bandwith in untrust interface. We replicate DB info to the Oracle cloud and we want to limit this traffic. We have 100Mbps bandwith, and we want to limit the Oracle cloud traffic 50Mbps max.

 

So this is what i configured:

 

Profi

...

Capturavpn3.JPG
Captura1qos.JPG
vpn2.JPG
tunel trafficshapping.JPG

limitation on config preview 30,000 lines

Hi Team, 

 

I hope ye are well. Just posting an undocumented limitation on the community. There is a limitation of 30,000 lines of difference on the config preview option before we send a commit through on the firewalls. 

 

After this limit, it advises '

...

Capture.GIF

Resolved! NAT from private to public

With PAN - if I have a client who wants to his a public IP address when their traffic passes through the inside/private interface - what would the NAT look like? E.g. say outside/untrusted IP address is 67.1.1.1 and NATs 1:1 to 10.10.4.5 which is rea

...

Tail traffic in CLI?

Is it possible to tail live traffic in the CLI while running a grep (or match) for specific things? I would find this extremely useful..

 

Thanks.

connectivity problem with GP

Users complain Global Protect vpn client performance problem. There is shown ping time more than 1000ms after I disconnect then reconnect there is shown less than 150ms.  Below photo after and before connection via GP

image002.jpg
image003.jpg
Radmin_85 by L4 Transporter
  • 2046 Views
  • 5 replies
  • 0 Likes

DROP_UPDATE

Hi,

 

I've just created a new node and I'm seeing events such us: DROP_UPDATE on aggregator type.  Does anybody have an idea of what could be the issue?

  • 24281 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels