Discover LIVEcommunity — Watch Now

  • 486,193 Members
  • 1,633 Online
  • 170,366 Posts
  • 17,857 Solutions
  • 50,169 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Issue with PA-445 Failover - Interface Reset

We just replaced our active-passive PA-850s with PA-445s and have run into an issue when we failover the firewalls. On failover, all the data-plane interfaces on the new active node go down for 20 seconds before coming back up. This is dropping every active connection through the firewall. We did not see this behavior on the PA-850s (failover...

XSOAR IP Forwarding requirement

For Cortex XSOAR 6.X On-premises deployment, in server deployment / system requirements describes that IPv4 IP forwarding is required (System Requirements • Cortex XSOAR Administrator Guide • Palo Alto Networks documentation portal ). Security team is questioning if there is other possibility to deploy XSOAR by not enabling IPv4 IP Forwarding or...

M.Sylos by L0 Member
  • 20 Views
  • 0 replies
  • 0 Likes

Prisma cloud API access key permissions

Hi I have aquestion for Prisma cloud's API access key. Quoted from docs, when generating access key, it's tied to current login user's Role. https://docs.prismacloud.io/en/enterprise-edition/content-collections/administration/create-access-keys I tried some test to see if it works. I made a role that do not have access to view, update, delete a...

ssublue by L0 Member
  • 80 Views
  • 2 replies
  • 0 Likes

Please update MITRE Techniques in BIOC module

Please update MITRE Techniques available in BIOC creation menu for Cortex XDR V3.16 Missing MITRE techniques in BIOC module: T1204.004 - User Execution: Malicious Copy and Paste - https://attack.mitre.org/techniques/T1204/004/ T1204.005 - User Execution: Malicious Library - https://attack.mitre.org/techniques/T1204/005/ I am sure these aren'...

D.Ogle by L0 Member
  • 27 Views
  • 0 replies
  • 0 Likes

Seeing DNS Tunnel traffic to/from our Public Ranges?

Hello, This past week I've started seeing traffic that's classified as Tunneling:isavscan.[tld] (threat type: dns-c2, ThreatID: 109001001) hitting our Outside intrazone rule where the source and destination are our public ARIN IPs (the rule is currently set to allow while I make sure I have all the traffic we need like BGP and IPSec allowed in o...

public to public DNS tunnel.PNG

False Positive - Generic.ml

FileHash: b1ef3582cd461327d9a93d210c7d503ece186ce6a86d3105355da45c5a208b62 Link to VirusTotal report for the file:https://www.virustotal.com/gui/file/7c0feaf9231ced1629c167e08a9bc997f01452ceab72e38fb180c3fbfd9d3bd6 Current VirusTotal Verdict: Generic.ml

[Let me know reason & workaround] Global Protect Agent ver6.3.3 “PanPUAC_xxx.dat” does not work (auto create or renew, failed to open).

- Let me know reason why “PanPUAC_xxx.dat” does not work (auto create or renew, failed to open), after Windows Update, BIOS Update. - Let me know workaround. -pan_gp_event.log Ex) -Failed to open file C:\xxx\Palo Alto Networks\GlobalProtect\PanPUAC_xxx.dat -Portal status is User authentication failed -Retry connect failed first time Best reg...

Achieve Resilient Security and Improve Operational Efficiency with VM-Series on Alibaba Cloud Gateway Load Balancer

3 min read

Co-authored by: Chintan Udeshi, Principal Product Manager We are excited to announce that Palo Alto Networks has introduced AliCloud Gateway Load Balancer (GWLB) support for VM-Series firewalls, enabling enterprises to secure critical workloads with greater elasticity and ease. This integration addresses long-standing challenges in cloud netwo...

Blog1.png
nbhogill by L1 Bithead
  • 84 Views
  • 0 replies
  • 0 Likes

Seeking Preparation Support for the SSE-Engineer Exam

I am planning to take the Palo Alto Networks SSE-Engineer exam and I am looking for some guidance on how to prepare effectively. If anyone has suggestions on study materials, practice test, or important topics I should focus on, I would appreciate your response on it.

Applying QOS bandwidth restriction

Hi, I would like to understand if my FW is capable of the below using QOS: - I am using PA-1410 in HA pair - I have 1 ISP internet link with 50Mbps bandwidth connected to eth1/1 - I have a requirement to create a guest network using the same ISP link and assign 10Mbps out of 50Mbps. So. using the same outside interface (eth1/1) I want to res...

Ahmed_94 by L0 Member
  • 147 Views
  • 4 replies
  • 0 Likes

PAN-OS 10.2.17 HA A/P - Mgt interface reported as duplicate IP of data interface

After installing PAN-OS 10.2.17 to a PA-440 HA A/P pair ( to address - CVE-2025-4615 PAN-OS: Improper Neutralization of Input in the Management Web Interface . ) 'duplicate IP' system logs reported where the stated MAC address appears to be the fw mgt interface. This is reported as a duplicate of the 'facing' data interface. Example: Received c...

Failed logins from 127.0.0.1

Hello all. In my VM logs, I'm seeing a failed login like this every 5 seconds:Authorization failed for user admin via Web from 127.0.0.1 : user admin role is not defined. This is a single VM-100 implementation, no Panorama. Any help on where this might be coming from? Edit to add: Currently running PANOS 11.2.8. In looking at release notes, ...

Palo Alto firewall management Interface Home Lab

Hi I have set up a Palo Alto Home Lab based on the following article using a Palo PA-220 instead. Setting Up the PA-200 for Home and Small OfficeSetting Up the PA-200 for Home and Small Office - Knowledge Base - Palo Alto Networks It is working well; however, I can't figure out how you set up the Piggyback to the management interface which for...

Upgrade VM300-500 needs to readded in panorama?

I have a cluster in Panorama. We are going to upgrade these 2 machines from VM300 to VM500. So i understand the SN will change and we will need to readded in panorama? is that right? i understand that being a different model i wont user command "replace old SN new SN" in panorama to readded. Right?

BigPalo by L4 Transporter
  • 170 Views
  • 1 replies
  • 0 Likes

Upcoming Fuel Events

Top Solution Authors
Top Liked Authors
Top Contributors

Latest from our Blog

HashiCorp Incident Management

This blog was written by Sabitha Muppuri (Sr Staff Site Reliability Engineer) The Critical Need for Vendor Tool Health Monitoring in Orchestration Environments In today's highly orchestrated and autos...

0 Comments