Discover LIVEcommunity — Watch Now

  • 489,582 Members
  • 1,518 Online
  • 170,723 Posts
  • 17,985 Solutions
  • 50,417 Likes
🔥 We are nominated in 4 CMX Community Industry Award categories! 🔥
Cast your vote now and be part of our journey to victory!

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Excel downloads being blocked

In the last couple of days we've been getting reports from multiple users that they are being blocked from downloading .xlsx files from a cloud service. I can see that there are multiple entries in the Data Filtering log for each file, and then final one is showing a Threat ID of BIN file and being denied. Anyone seen anything similar?

Peter_Neville_0-1766139340125.png

Max number of units (aeX.Y subinterfaces) supported under a single AE interface?

Hi Team, I’m looking to confirm the maximum number of units (aeX.Y subinterfaces) that can be configured under a single Aggregate Ethernet (AE) interface on Palo Alto firewalls. Specifically for models like PA-440,PA-450, PA-820, and PA-850, and across recent PAN-OS versions: • What is the hard platform limit for aeX.Y units per AE?• Are there a...

VivekMs by L1 Bithead
  • 77 Views
  • 1 replies
  • 0 Likes

Windows-Remote-Management & Implicit Use of Web-Browsing

I need your help with understanding this. We've got a rule that was intermittently working. We built a rule around the use of "windows-remote-management" which is using the standard port of 5985/tcp. The rule is a service "application-default" rule. When we look through the logs we see that some of the traffic that should be matching this...

Brandon_Wertz_0-1766598734776.png

Advanced Authentication Cortex API

Does anybody have any examples of how they have implemented Advanced Auth for the Cortex APII only have PowerShell available examples using that that would be preferred, but I can probably interpret most scripting languages.If not examples, maybe links to articles discussing the process to implement it more generally.Cortex XDR

Cortex XDR manager upgrade

Hello, In October, our XDR manager console displayed a pop-up window regarding "Cortex XDR 4.X is now available" with the possibility to upgrade before end of February 2026. We did not choose to upgrade at that time. How can we upgrade now ? Can we do it alone or it require a support case ? Thank you for your help. Thomas

Cloud NGFW Credits issue

Hello All,I recently purchased Cloud NGFW for azure and purchased paloalto credits as well.my Azure NGFW shows as PAYG ( Pay us you go) instead of showing license with my credit.is it possible to change my PAYG license to credit based.

M.vyas by L0 Member
  • 1123 Views
  • 6 replies
  • 0 Likes

Virtual Test Lab

The Virtual Test Lab (VTL) offers an environment where users can practice and get familiar with the Palo Alto Networks Next-Generation Firewall. The pre-built lab environment provides access to a Windows Server OS, two Linux server OSes and a Palo Alto Networks Next-Generation Firewall. It allows users a fully isolated environment to freely con...

Masharad by L3 Networker
  • 50079 Views
  • 36 replies
  • 12 Likes

XDR 4 - Integrations AD Query

Hi everyone, on Cortex XDR 4 ,we can build small playbooks, and one of the available actions is AD Query.My question is: what is required to configure this integration? I see that the integration asks for the IP address, domain user, and other parameters, but if the Active Directory is on-premises, how does Cortex XDR establish the connection?Wh...

tlmarques by L4 Transporter
  • 237 Views
  • 1 replies
  • 0 Likes

Playbook to enrich dataset data into alert context

Hi, Is anyone able to guide me on how to achieve this perhaps? I want to ran a task in a playbook that will do a custom query in a dataset and pull information and add it to the alert context data.. is this possible and if so guidelines would be appreciated. thanks in adv

PA_nts by L4 Transporter
  • 191 Views
  • 1 replies
  • 0 Likes

licence

Hi.My license expires today.I got a new one, but it's for one month, not a year. Why wasn't my license renewed for a year?

How to create a support case without a TCF file

Hi all, dont know if the right board. I'm trying to lodge a case with PAN support, but they are wanting a TCF file. The problem is that the device in question is in a broken state. We took the device out of the box, attempted to disable ZTP; the device rebooted, and never finished "rebooting". It got stuck in a boot loop, and eventually corrupte...

Cloud NGFW for Azure Autoscale

In the doco I see that Cloud NGFW for Azure can automatically scale to 40 instances and support 100Gbps in a vNet. I do not see any details for the config of autoscaling. Do I need to configure the autoscaling or does it just happen?

Activate ECMP without trafic disruption

Hello, I wouldlike to enable ECMP on one HA pair. I read that the process will restart and can lead to trafic disuptions. I was wondering if i could do the following in order to avoid disruptions : Disable config sync. Doing the modification on my passive firewall. Wait that the process restart etc. Force HA failover on the standby member with...

High Data Plane Utilization During Business Hours

Hello, We are experiencing an issue that is becoming hard to isolate, our end users noticed network slowness about a few days ago. During Isolation and investigation it led us to our NGFW PA-3260's. This causing extremely High latency when reaching out from our Inside to Internet interfaces. Resource utilization (%) during last 24 h...

HungTrinh_0-1763749511805.png

Upcoming Fuel Events

Top Solution Authors
Top Liked Authors
Top Contributors

Latest from our Blog

Why, Where and How of PQC Cipher Translation Proxy

This blog was written by Saad Khan, Sr. Technical Marketing Engineer Why is the translation of ciphers to be "quantum-safe" a necessity? The cybersecurity landscape is rapidly evolving, driven by the ...

0 Comments