• 525,116 Members
  • 1,570 Online
  • 1,131,201 Posts
  • 19,647 Solutions
  • 53,417 Likes

Welcome to Palo Alto Networks LIVEcommunity

Find answers, share solutions, and connect with peers and thought leaders from around the world.
New to LIVEcommunity? Check out our Welcome Guide.

Community Activity

analyse d'un pc

Bonjour je voudrais savoir si avec la console cortex paloalto je peux faire une analyse d'un pc? En vous remerciant par avance. et si cela n'est pas possible comment je peux le faire si vous avez une procedure je suis preneuse . Merci a vous belle journée

CIE group (created on EntraID and Okta) visible in CIE but not recognized by PAN-OS firewall

Hi everyone, I’m troubleshooting a CIE group mapping issue on a firewall and would appreciate some advice. The setup is: PAN-OS 11.1.13-h9 Panorama-managed firewall CIE using Okta as the directory source Okta receives groups from both its own directory and MS Entra GP uses these groups in Portal Agent Config and Gateway configuration...

Meed by L0 Member
  • 29 Views
  • 0 replies
  • 0 Likes

Case #01083646: Unexpected behavior: WF-500 Failed to update content

Disk-space on the WF-500 was full and conent updates have been failing. The commands below were used to resolve the issue: delete wildfire-metadata update panup-all-wfmeta-<release> request wf-content upgrade check request wf-content upgrade download latest After doing so when running the command: request wf-content upgrade install versi...

jdearman by L2 Linker
  • 5315 Views
  • 3 replies
  • 0 Likes

XSIAM VPN Analytics

How do i get third party vpn logs to work with the xsiam analytics rules (https://cortex-docs.paloaltonetworks.com/analytics-alerts/alerts-by-data-source/third-party-vpns). These are vpn products for which xsiam doesn't have an in platform data model rule so I would have to create one. I need to know how to create one so that the analytics rules...

Cortex XSIAM/XDR - Java File Examination conflict in Policy

Hello Team,"We have observed that every agent upgraded to version 9.2.1.285 on Citrix devices (VDA, MCS) changes its status to "Partially Protected" after the cyserver restart.As the number of devices falling into this status has been increasing, we have temporarily modified the policy to prevent further upgrades on these systems until the issue...

Panorama GUI unresponsive

Good day All , I am currently unable to access the GUI of a Panorama , after further investigation I have found the below(show system software status) : Process dlsrvr stopped (pid: -1) - Exit Code: 1 Process websrvr stopped (pid: -1) - Exit Code: 1 I followed on to checking the disk-space and found root at 100% : P...

Ridwaan by L1 Bithead
  • 34 Views
  • 0 replies
  • 0 Likes

SSL Decryption Issue on PA-520 Running PAN-OS 12.1.7-h3

We are experiencing an issue with SSL decryption on a PA-520 running PAN-OS 12.1.7-h3. After enabling decryption, the firewall operates normally for approximately three hours. However, over time, the number of decryption failures gradually increases until all new connections are rejected. Disabling decryption immediately restores normal operatio...

User-ID in FIPS-CC

Hello, I am having an issue setting up user-id when the firewall is in FIPS-CC mode. Here is the following issue: Environment: PA-3440, PAN-OS 11.2.10-h7, FIPS-CC mode enabled Windows User-ID Agent v11.0.3-134 (identical version on both hosts) Issue:I have two Windows-based User-ID Agents configured under Device > Data Redistribution &g...

trojan/Win32.deceiver.d - False Positive?

I have noticed that PA NGFW sees this threat trojan/Win32.deceiver.d using Logon.exe from PCs in a specific zone (zone 1) going to our DCs that happen to be in a different zone (zone 2). I have had a couple of users say they have to type in their credentials a couple of times but we blamed DUO for that. In the Threat log I see only a few of th...

PAN-OS 11.1.16, Unable to connect to VPN Portal or Gateway, winhttpObj, error!

We have a NGFW hosted by Rackspace in the US. Any new attempt to connect to the Global Protect gateway portal fails. We can ping and tracert to the I.P. address and domain of the gateway, but whenever we go to connect via the Global Protect VPN client or we attempt to go to the web portal via browser the connection fails with an EMPTY_RESPONSE. ...

josh by L0 Member
  • 111 Views
  • 1 replies
  • 0 Likes

PAM for Full Databases Office Hours Slide Deck- September 2026

1 min read

View the slide presentation from our Success Office Hours that took place September 9, 2026. The session focused on modernizing the database identity security lifecycle using Idira® Privileged Access Manager SaaS, by Palo Alto Networks. We will explore how organizations can automate discovery, streamline credential rotation without heavy legacy ...

sprince by L2 Linker
  • 164 Views
  • 0 replies
  • 0 Likes

Upcoming Fuel Events

Top Solution Authors
Top Contributors