Discover LIVEcommunity — Watch Now

  • 486,819 Members
  • 1,506 Online
  • 170,425 Posts
  • 17,875 Solutions
  • 50,204 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

When web proxy will support XFF header insertion and web cache ?

Hi all, Now with explicit and transparent forward proxy support I see a need for X-Forwarded-For/Real-Client-IP header insertion support and a second place cache support. Palo Alto can insert the user id in a header for the backend server (Username Header Insertion) but why not the ip address 🤔 Maybe before it was harder to extract layer ip add...

Question on "default" VLAN Interface

This may be a stupid question, but is there a purpose for the default vlan Interface (named just "vlan") that gets created on network templates? I have a couple of deployments that use vlan interfaces, but I noticed that the default vlan interface is the only one that has a mac address. Is this interface necessary?

jwill2 by L0 Member
  • 24 Views
  • 0 replies
  • 0 Likes

Palo Alto User Agent ID Services Failing intermittently

We have 2 User ID agents on 2 different windows servers. Both User-ID agents' services are getting hung up and requiring manual intervention of services being stopped and started after couple of days. The issue has progressively been getting worse as well. This is causing group mapping to intermittently fail. We have upgraded the gateways to the...

Data Plane CPU utilization Reaches more than 90 %

model: PA-VMvm-license: VM-SERIES-4vm-cap-tier: T2-14GBvm-cpu-count: 4 Data Plane CPU utilization Reaches more than 90 % . Is there any Limit on PPS for Azure VM-SERIES-4 . I think 525895 Kbps is well under the limit . Is PPS causing the issue ? . Session table: 1% , Packet buffer: 10% , Packet descriptor: 0% , SW tag descriptors: low all seems ...

Threat Vector | Securing the Modern Workforce: Lessons from Medallia's CISO

In this episode of Threat Vector, host David Moulton, Senior Director of Thought Leadership at Unit 42, speaks with Jiphun Satapathy, SVP and CISO of Medallia. They discuss how security and user experience must coexist in today’s hybrid and AI-driven workplace. Satapathy explains how Medallia secures its global workforce, manages SaaS adoption, ...

ep96_ThreatVector_LiveBanner.jpg
dmoulton by L4 Transporter
  • 38 Views
  • 0 replies
  • 0 Likes

Threat Protection Coverage for LockBit 5.0

Hi All, We like to have clarification regarding the current threat protection capabilities of Palo Alto Networks firewalls against LockBit 5.0 ransomware, which has been reported as a newly emerging variant around September 2025. Upon reviewing the ThreatVault database, we found several existing threat signatures related to LockBit (e.g., Troj...

Cortex XDR Blocking Intel process

Hello,We have noticed a reoccuring issue between our clients, that a intel process is being blocked.The main cause of it being blocked is IntelGraphicsSoftware.Service.exe with a path something like this - C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.40.1953.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGr...

Global Protect 1.2.2-14 winhttpObj, error! ipaddress

Hi,I keep getting this error when trying to connect with global protect, this pc is on the internal network. I should get the massage 'Connected Internal'...any ideas. I have included the log below and highlighted the line.(T3776) 04/24/13 09:46:14:861 Info (2249): winhttpObj, HandleHttpsRequest, cmdStr = (T3776) 04/24/13 09:46:14:861 Info (2268...

Resolved! Combining IP and URL EDL on Rules

Hello, We're adding the Microsoft 365 EDLs from here: EDL Hosting Service. The goal is to allow access to all M365 IPs and URLs outbound. What's best practice if I have two separate EDLs, one for IPs and one for URLs? I see that IP-based EDLs can be used in the Destination portion of the rule, and URLs appear to be only selectable in the ...

Resolved! Identifying Preferred/Recommended PAN-OS Versions

I recently upgraded 2 locations of 3420s and 3410s to 10.2.10h4 from 10.2.7h8 and it looks like Palo Alto has included a feature that will identify the "preferred" software versions. This is a pretty neat feature native in the GUI which will help admins quickly identify the current preferred releases.As always admins should do their due dil...

Brandon_Wertz_0-1725895914916.png

False Positive - ManualUpdate.exe

FileHash: da7e3524a2b26f47bdc221c4c9197c6a6fdda636fd93b398689900126ad38627Link to VirusTotal report for the file:https://www.virustotal.com/gui/file/da7e3524a2b26f47bdc221c4c9197c6a6fdda636fd93b398689900126ad38627Current VirusTotal Verdict: Generic.ml

emma by L0 Member
  • 58 Views
  • 0 replies
  • 0 Likes

Upcoming Fuel Events

Top Solution Authors
Top Liked Authors
Top Contributors

Latest from our Blog

HashiCorp Incident Management

This blog was written by Sabitha Muppuri (Sr Staff Site Reliability Engineer) The Critical Need for Vendor Tool Health Monitoring in Orchestration Environments In today's highly orchestrated and autos...

0 Comments