• 523,642 Members
  • 1,235 Online
  • 1,130,468 Posts
  • 19,585 Solutions
  • 53,330 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

Subscribing to Cloud NGFW in AWS Marketplace

I have got the confirmation email from AWS marketplace confirming my subcription to the product "Cloud Next-Generation Firewall as a Service (30-Day Free Trial to PAYG)" However I cannot proceed further. Under the "Manage Subscription" When I click Sign in on Step2: Sign in or create a vendor account, it redirects to the url "https://web.aws...

EPHA_01 by L0 Member
  • 46 Views
  • 0 replies
  • 0 Likes

VPN with two subnets

Hello, We are using globalprotect for users to connect to our network, but recently we have another set of users that we would like to put them on a separate network. We created another profile on the Gateway specifying that if certain users, we have connection with SAML, should receive the IP address of the secondary subnet. We moved this p...

YParreno by L1 Bithead
  • 51 Views
  • 1 replies
  • 0 Likes

Is there anything shown in the system log when the password change date for the Palo Alto firewall administrator account is about to expire?

When setting the password complexity on the Palo Alto firewall, I set only the expiration date to 60 days and locked the account. Is there a way to keep or leave related logs in the system log before the expiration date? If there is any content, please also provide a link to a site where I can refer to it.

The mystery of the bracket cross bar 540-000934

I have installed MANY ION 3200 chassis with the PAN-ION-RACKTRAY-ION. Inside that four post racking tray intended for four post racks is this mystery item: Bracket, Cross bar, 2-post rack Kit SD-WAN 540-000934. Why is a small 2 post kit shipped with this enormous shelf? How in the world is this part utilized or installed? Yes this is not ...

Vulnerability scan showing CVE-2008-4309 - SNMP 'GETBULK' Reflection DDoS

Not seeing anything on this anywhere I search. Nessus is showing CVE-2008-4309 - SNMP 'GETBULK' Reflection DDoS on our PA-1410 on 11.0.3-h10. Nessus was able to determine the SNMP service can be abused in an SNMPReflection DDoS attack :Request size (bytes) : 42Response size (bytes) : 2341 Not sure what I should do to remedy this alert. Than...

Best Practices for Disaster Recovery & Incident Response Playbooks in Prisma SASE

Hello Community, We are reviewing our operational resilience and incident response processes for our Prisma SASE environment and would like to understand industry best practices. We're currently looking to develop and mature playbooks covering scenarios such as: Prisma Access / Prisma SASE outages Service Connection failures Authentication pro...

Resolved! Step to change standalone for both device

Hi All, All our PA is managed by Panorama and there are a couple of HA pairs in our environment. we just want to change one of the HA pair to standalone. Currently our set up is active passive. We would like change to standalone on both device. Is there any steps to make this happen? Thanks !!

VM-Series Upgrade

Hi Team, Recently we performed VM-Series NGFW PAN-OS upgrade from 11.2.7-h13 to 11.2.13 (which is deployed on GCP). Before upgrade ingress & egress traffic was working fine, post upgrade we faced issue with ingress traffic. For this issue we raise TAC ticket, we didn't not received any conclusive resolution. After reverting back to 11.2....

Shutting down/disabling subinterfaces

I am very new to the PANOS world so I will apologize in advance if this is obvious, however my search of documentation and knowledebase did not yield anything. I have been looking for a way to administratively shut down sub interfaces. Is this possible? While it's easy enough to shutdown a physical interface by assigning it's link-state we're no...

scourge by Not applicable
  • 37086 Views
  • 16 replies
  • 0 Likes

Cortex XDR 8.9 Non-Persistent Citrix Servers and Cache Write Issue

Hello everyone, We have encountered and issue where the target servers do not get content updates. The citrix Windows servers reboot nightly with the golden image configurations but do not receive the latest content updates. At the same time, around noon we have to reboot the target servers due to write cache filling up to 100%. Have you enco...

Upcoming Fuel Events

Top Solution Authors
Top Contributors