Discover LIVEcommunity — Watch Now

  • 484,716 Members
  • 2,565 Online
  • 170,161 Posts
  • 17,816 Solutions
  • 50,088 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Resolved! PDF report generate and date is not in order

hi all, I have an issue where I generated and exported my custom report in PDF and the timestamp is not in order. And the "sort-by" option is limited, refer to the attached. Is there a way to view my report in the correct order based on the timestamp? My Palo alto software version is 10.1.8

Help Needed: NAT & Security Policy Configuration for Azure LB → Palo Alto → DMZ Webserver (Public IP)

Hello Team,Goal:I want to access the DMZ Webserver (Public IP) via the Azure Load Balancer Public IP.Current Setup:Azure Public Load Balancer is created with Frontend IP, Backend Pool, and Health Probe.Palo Alto Firewall VM is added to the backend pool.DMZ VM (Webserver) is running with a Public IP.Issue:Load Balancer backend pool is correctly f...

Hostfirewall Status Report

Hi Team, I am trying to fetch some report from Cortex XDR console. I would like to know how many endpoints has host firewall rule applied. How many endpoints still running with Windows firewall. Is there any script available to check.

Performance impact of using higher DH group for site-to-site VPNs

“Clarification on the meaning and performance implications of ‘Integrated Crypto Assistant’ for PA-1420 IPSec VPNs” Hi all, I’m working with a PA-1420 appliance in a site-to-site VPN deployment and I’d like to better understand the hardware/crypto architecture. Specifically: The PA-1420 architecture diagram lists “Integrated Crypto Assistant...

Alarm contacts /Power supply PA-1420

Hey, I was wondering if the PA-1420 model had physical alarm contacts or done through ethernet. Also by looking at the front panel in the datasheet only, I see a USB-C? Can I surmise that this is where the power supply can connect to the firewall?

emilynicholson_0-1763575765298.png

We are experiencing a problem, data may not be up to date. Please try again in a few minutes.

Hello All, I've been seeing the following message on our Cortex XDR Dashboard for the past few days: "We are experiencing a problem, data may not be up to date. Please try again in a few minutes." There's also a link to Download support file included. Has anyone else encountered this issue or have any insights into what might be causing it? ...

XDR Allow-Listing signed processes

We have internally developed scripts that we would like to create XDR exclusions or alert level reduction for based on if they contain code signing certificates. I don't know how to go about doing this or if it's even possible. The idea here is to not need to update exclusions based on hashes any time the scripts are changed and to be more se...

M.Crow by L0 Member
  • 41 Views
  • 0 replies
  • 0 Likes

Limit User-ID Agent queries to cerain Windows event-IDs

We have been using PA-User-ID Agent for years an it was working fine. The Agent is connecting to Domain-Controller Log and maps user-name and ip-address of successful logins for firewall-policy usage. Yesterday we changed GPOs on the Domain Controller to enable Kerberos-Ticket Logging and since then we received unwanted mappings: A user starting...

SBegass by L0 Member
  • 38 Views
  • 0 replies
  • 0 Likes

GlobalProtect VPN Client windows 11 crash

Hi, I am using GlobalProtect GlobalProtect App version 6.2.8-263. It is the latest version i could download from network. When i am using connectioni got bluescreen crash whch i can reasume to: Bugcheck code: 0x1E This is MODE_EXCEPTION_NOT_HANDLED, which means that a kernel-mode component threw an exception that was not handled. Excep...

PiotrH by L0 Member
  • 51 Views
  • 0 replies
  • 0 Likes

license.api.paloaltonetworks.com returned with HTTP response code : 404

HI all, I am encountering an issue with the Palo Alto Networks VM-Series firewall (VM-SERIES-2, VM Mode) running on Amazon AWS with software version 11.1.10-h5. The error message is: Request made to the server "license.api.paloaltonetworks.com" returned with HTTP response code : 404. The device certificate is valid and correctly retrieved from t...

Using Keycloak as idP

Has anyone succeeded in using Keycloak as idP with Globalprotect? We're having issues with the windows clients receiving "You are already logged in" while trying to log in, which also make the gp app hang. The GP app for macOS never experience this. We've also experienced with openconnect on Ubuntu (since Palo's own ubuntu GP app does not work a...

Anbjorn by L1 Bithead
  • 4205 Views
  • 3 replies
  • 0 Likes

Upcoming Fuel Events

Top Contributors

Latest from our Blog