Discover LIVEcommunity — Watch Now

(view in My Videos)

  • 513,951 Members
  • 5,132 Online
  • 1,125,036 Posts
  • 18,980 Solutions
  • 52,346 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Automating the Palo Alto NGFW's Process/Deamon Restarts with Python PEXPECT

5 min read

In my previous article, “Automating the Palo Alto NGFW's Process/Deamon Restarts,” I detailed how to orchestrate process restarts using TCL Expect paired with Bash scripts. While TCL Expect remains a classic approach for SSH-based network automation, modern engineering workflows are far better served by utilizing Python alongside the pexpect mod...

nikoolayy1_0-1778420526161.png

Resolved! Link to Panorama demo site

Hi All I have the link to the PAN Firewall demo site (https://us1.demo.paloaltonetworks.com) but have forgotten the URL link to the Panorama demonstration site, can someone please help or direct me to the correct Panorama link.

Suspicious executable detected Microsoft Store Purchase App

Hello everyone, Has anyone seen this process appear in Cortex XDR? C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22603.1401.4.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe It’s showing up on an endpoint, but Cortex XDR isn’t providing any additional details, alerts, or related events. Before I dismiss it, I want to confirm whether thi...

security policies

hello , i need to extract security policies from palo alto appliance Model (PA-460) is there a way to schedule the report or grant read only access to audit function ?

NAT policy conversion

hello, im currenly converting the cisco asa's configuration to paloalto . so in cisco asa , the nat policy is configured as following : object network VMAnat (ADM,inside) static 10.15.65.3so if i get it right , this policy means that the traffic from the source VMA and source interface is ADM which is an object already created to destination an...

Prisma Access Strata Cloud Manager - Push Failed

Subject: GlobalProtect Push Configuration Fails with "Unexpected Commit Error" on Strata Cloud Manager Hello, We are currently using Prisma Access with Strata Cloud Manager (SCM), and we're experiencing a critical issue. Whenever we attempt to push the GlobalProtect configuration, the operation fails with the following error message: [status]:...

Getting Cortex Copilot

Hello Team, I have been researching the Cortex Copilot functionality and would like to clarify a few points regarding availability, licensing, and compatibility. Currently, we have a Cortex XDR Pro license, and I would like to understand: How can we obtain or enable the Cortex Copilot functionality? Is there any additional license, subscription...

Internal DNS Issue via Prisma Access

Hi Team, Recently we have done Prisma SASE deployment, below is the infra details:- 1. Private Application hosted on AWS. 2. Tunnel created between Prisma & AWS via ZTNA Connector. 3. Users connect private application via Global Protect or Prisma Browser. 4. Application host in AWS via Internal load balancer. 5. DNS Server deployed in AWS ...

GlobalProtect Mac Client ENDLESS POPUPS that TAKE FOCUS from other apps

"Connection FailedThe network connection is unreachable or the portal is unresponsive. Check the network connection and reconnect." This pops up on my screen every minute or two, and immediately begins capturing keyboard input, and because the app is mandated by my sysadmin and not configured by me, there's also no way to force-quit it or stop i...

Prisma Browser for Mobile

hello expert, Already set up the Remote Connection, private apps and Connector set up, however, it RDP and Private apps did not show in Mobile PB agent, https://www.paloaltonetworks.com/resources/datasheets/prisma-access-mobile-solutions-aag is there anything missing? Prisma Browser

SeanDeHarris_0-1780481532571.png

Upgrading from 10.2.9-h1

Hello, We currently have two PA-3410 firewalls configured in HA, running PAN-OS 10.2.9-h1. We are planning to upgrade to the preferred release PAN-OS 10.2.16-h6. However, after reviewing the security advisories, it appears that this version does not fully mitigate some vulnerabilities, including CVE-2026-0257. Would it be advisable to upgrade di...

mmarie by L1 Bithead
  • 78 Views
  • 0 replies
  • 0 Likes

Impossible to migrate an ae interface to a different speed in Panorama?

Quite new to Panorama, but have been working with Palo Alto standalone firewalls for a little while. Client has 2 Active Passive HA FW's in Panorama and an ae1 interface with 4x 1G interfaces as members. They want to switch this to 4x of the 10G interfaces during an outage window. Am I right that I should be able to just remove the 4x 1G membe...

Resolved! [User-ID HUB Vsys] Solved Issue User-ID Behavior

Hello LiveCommunity Team! I created this post to share my experience regarding the User-ID Hub for multi-vsys environments involving some User-ID incomplete table for a specific vsys:I have an NGFW with multiple vsys, and in each vsys I have configured a unique Data Redistribution Appointing to dedicated User-ID Agents and Panorama/NGFWs, local ...

License Credit Usage per Firewall

In order to accurately bill our customers, we would like to have a breakdown of credit usage per firewall. I was able to retrieve a list of all firewalls from our panorama instances and also the credit pools and how much is used in total from palo alto API. However, there doesn't seem to be an obvious way to break it down further. Is this tec...

Upcoming Fuel Events

Top Solution Authors
Top Liked Authors
Top Contributors