• 523,102 Members
  • 1,928 Online
  • 1,130,216 Posts
  • 19,558 Solutions
  • 53,294 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

How to Update Specific Versions of Content via the CLI

Hello Palo Alto Networks Support Team, I would like to ask about the current method for updating content via the CLI. Previously, we used the following command to install a specific content version: request content upgrade download <content version> https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-upgrade/cli-commands-for-upgra...

Device Security license

Hello everyone, I have an active Precision AI Network Security Subscription Renewal Bundle for a firewall. However, when I log in to the Customer Support Portal and navigate to Products > Assets, then select the firewall, I do not see a Device Security license listed. I found the following document, which mentions Device Security: https://d...

GlobalProtect Release for Ubuntu 26.04 LTS ?

Hello together.recently was the new Ubuntu 26.04 LTS release, until now the provided GlobalProtect client supports only Ubuntu 24.04:https://docs.paloaltonetworks.com/compatibility-matrix/reference/globalprotect/where-can-i-install-the-globalprotect-app?otp=linux#linux When can we expect the new GlobalProtect version for Ubuntu 26.04 ? Best re...

Global Protect 6.3.3 Issues

I am on Global Protect Version 6.3.3-1121. I can connect on my Windows Device just fine. On a Mac version 26.6.2 when i try to connect, the client says "you are redirected to an embedded browser to authenticate and connect". It just stays there and never connects

pschaeve by L0 Member
  • 106 Views
  • 2 replies
  • 1 Likes

Managing GlobalProtect Through SOTI MobiControl - Android

We are trying to manage GlobalProtect through SOTI MobiControl by locking down the portal address. I have the Managed App Config enabled in MobiControl with the portal address defined which does lockdown the portal address field in the settings. The issue is when there is an error connecting to the portal address for whatever reason, GlobalProte...

ernestogutierrez_0-1787867782268.png

Resolved! Wrapped around the axle - iOS + GP + Client Certificate generated on the Palo

I’ve got an iPad that has the GlobalProtect client installed. I’ve created self-signed certs using the PA 440 as the CA for the client auth, to enable MFA (user+pass & cert). I get this error “A valid client certificate is required for authentication. If the issue persists, contact your system administrator”. I’ve been troubleshooting ...

IMG_0623.jpeg
IMG_0620.png
IMG_0619.jpeg
IMG_0617.png

Unable to Connect to Global Protect 6.3.4 iPhone and iPads

Hello everyone, We're experiencing an issue with GlobalProtect on managed iPads and iPhones version 6.3.4-23. I'm trying to determine whether anyone else has run into this recently. Environment GlobalProtect VPN deployed via Microsoft Intune iPadOS devices Authentication through PingID (SAML) VPN type: Palo Alto Networks GlobalProtect Authent...

mtruong_0-1787151999535.png
mtruong_1-1787152104165.png
mtruong by L0 Member
  • 123 Views
  • 1 replies
  • 0 Likes

XDR Alert Dump – Finding the File That Triggered the Alert

I have a question. When we perform a Dump Alert and get the ZIP file, how can we analyze it in more detail? For example, if I want to see the .ps1 file that a particular user executed on the machine and that triggered the alert, would that file be included in the dump? I’ve already searched everywhere, but I can’t find it. I can see a folder cal...

tlmarques by L4 Transporter
  • 44 Views
  • 1 replies
  • 0 Likes

Using firewall's own loopbacks as dummy Panorama servers

Hello, was trying to find if anyone has ever dealt with something similar, but couldn't find anything (so, hopefully this isn't a duplicate post). Some info to put things into perspective: I was tasked to migrate 6 HA (active-passive) clusters from soon-to-be-decommissioned Panorama (hosted in Azure) to our on-prem Panorama (hosted in DC) ...

Guidance Required for VM-500 Redeployment in Azure Due to Root Partition Limitation

Hello All,We are running two VM-500 firewalls in Azure configured in an Active-Passive HA pair. Currently, we are encountering high root partition utilization on both firewalls.A TAC case was opened, and although some files were deleted to reduce disk usage, the root partition utilization remains high. Palo Alto TAC has informed us that to incre...

kganesh by L0 Member
  • 30 Views
  • 0 replies
  • 0 Likes

Error: Domain's DNS name is missing in Active Directory Authentication

Hi guys, while working on setting up user-id, I got this 'Error: Domain's DNS name is missing in Active Directory Authentication' while trying to commit. I found this instruction: Using the Web GUI:1. Navigate to Device ➔ User Identification ➔ User Mapping.2. Click the Gear Icon next to Palo Alto Networks User-ID Agent Setup.3. Click on the Ser...

tinhnho by L3 Networker
  • 61 Views
  • 1 replies
  • 0 Likes

Low Incident

We have integrated Cortex XDR with Elastic SIEM. Our SOC process currently creates a ticket for every Cortex XDR incident/case, including Low, Medium, and High severity incidents. Is Palo Alto's recommended best practice to create tickets for all Low severity incidents, or should Low severity alerts/incidents be monitored and correlated before t...

Resolved! XSIAM HTTP Log Collector Testing

Hello everyone, We are currently considering to us a HTTP Log Collector. However, before this can be started, I wanted to test the collection. Now, in theory, this should not be hard, due to the examples provided after setting up the integration. Nonetheless, either the Python Example is faulty in some way, or I am being exceedingly stupi...

XDR 4 - Integrations AD Query

Hi everyone, on Cortex XDR 4 ,we can build small playbooks, and one of the available actions is AD Query.My question is: what is required to configure this integration? I see that the integration asks for the IP address, domain user, and other parameters, but if the Active Directory is on-premises, how does Cortex XDR establish the connection?Wh...

tlmarques by L4 Transporter
  • 1911 Views
  • 4 replies
  • 0 Likes

Upcoming Fuel Events

Top Solution Authors
Top Contributors