Discover LIVEcommunity — Watch Now

  • 486,487 Members
  • 1,898 Online
  • 170,390 Posts
  • 17,870 Solutions
  • 50,186 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Enterprise email had not been allowed to access Strata Cloud manager pro link and common services

I have added new user with enterprise email but had not been allowed to access Strata Cloud manager pro link and common services PA support had taken near a month and finally ask for my vendor to grant access, but vendor did not have time to deal with I am owner of PA410, but PA support has no right to grant access even if I open case with CSP a...

Resolved! About FIN/RST Packets

Hi Experts, I was unable to find detailed information in the manufacturer's documentation or knowledge base, so please advise. ・If a communication is permitted by the firewall's security policy, is it possible for the firewall to send FIN or RST packets to that communication (client or server)?・Does the firewall ever send FIN or RST packets ...

Y.Kida by L0 Member
  • 164 Views
  • 2 replies
  • 0 Likes

Enterprise firewalls need to be opened for new Redirector IP addresses on ports 443/TCP and 3851/UDP

Is it possible to do a screen view using something like Teams to update our firewall with the following reminder that was sent to me " Dear Customer, We are reaching out to inform you that new Redirector IP addresses will be added to the existing Redirector IP addresses list starting 15th December 2025. We advise customers to add the new IP ad...

DNS req/res does not work with "transaction" context

Hi all, I'm playing with the app-id custom signature to catch the DNS Rebinding. I have some experience with the custom app-ids and I do understand the difference between the "transaction" and "session" context (well, at least I thought so). The thing is... I want to base my signature based on the DNS req and res in a way they need to be "glue...

dsebalj by L0 Member
  • 106 Views
  • 1 replies
  • 0 Likes

Use onprem hosted EDL from AWS CNGFW

Is it somehow possible to load an EDL from a server located in onprem network (not reachable from Internet)? From which interface / IP address does the AWS CNGFW tries to connect to EDL server? Can it make connection from an interface / IP address located in customer VPC? Could not find any documentation for this specific topic.

Anon1 by L4 Transporter
  • 36 Views
  • 0 replies
  • 0 Likes

Move Firewall from one Hierarchy device group/template to another hierarchy device group/template in panorama

Hi All, I want to move firewall(FW1) from one Hierarchy device group/template to another hierarchy device group/template in panorama. I Want to add destination device group default rulebase and remove source device group default rulebase . However local firewall rulebase should be retain . Please help with best approach to achieve these .

Setup-Requirement.jpg

New global protect install for Windows x64 v6.3.3c828 has broken MSI

Hi, We have just downloaded the latest GP for Windows x64 v6.3.3c828. The MSI properties indicate that the product code is {B316DC7F-EB20-4A36-AA0A-96099FA142DB} however when it installs it installs as the previous version product code {CD809CD6-9D01-417E-9E76-D19EEE77E74F}. We have verified that the version installed and running is the c828 ver...

Resolved! Telemetry - Hostname/url is in illegal/bad format

Hello - Any idea on how to troubleshoot this? Device Telemetry Statistics:device-health-performance: last-attempt: Fri Oct 6 13:29:13 UTC 2023last-success: Fri Oct 6 12:19:14 UTC 2023num-of-failed-attempts: 2reason: Hostname/url is in illegal/bad formatstatus: failedproduct-usage: last-attempt: Fri Oct 6 13:29:13 UTC 2023last-success: Fri Oct ...

Windows Event Collector vs XDR collector

Hello guru, it seems both served the same purpose to me. all i would like to ingest the event logs for analystic purpose. except the configuration nature, like WEC required AD config and XDR collector need an agent installed. what is the pros and cons for for WEC and XDR collector? any use case for each? thanks SdG

Applying QOS bandwidth restriction

Hi, I would like to understand if my FW is capable of the below using QOS: - I am using PA-1410 in HA pair - I have 1 ISP internet link with 50Mbps bandwidth connected to eth1/1 - I have a requirement to create a guest network using the same ISP link and assign 10Mbps out of 50Mbps. So. using the same outside interface (eth1/1) I want to res...

Ahmed_94 by L1 Bithead
  • 288 Views
  • 5 replies
  • 0 Likes

Is it possible to configure a custom report into graph or chart format, similar to the options available for predefined reports?

We have configured a custom report for Interface Bandwidth and scheduled it for daily email delivery. However, we are not receiving the reports via email or seeing them triggered. The SMTP configuration test is successful, and we are not able view the reports under Monitor > Reports. Whenever we try to pull the report manually from the cus...

Upcoming Fuel Events

Top Solution Authors
Top Liked Authors
Top Contributors

Latest from our Blog

HashiCorp Incident Management

This blog was written by Sabitha Muppuri (Sr Staff Site Reliability Engineer) The Critical Need for Vendor Tool Health Monitoring in Orchestration Environments In today's highly orchestrated and autos...

0 Comments