Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24181 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

156 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

696 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

3882 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

530 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

373 Posts

Cloud Native Application Protection

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Cloud and Cloud Identity Engine discussions.

402 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

2723 Posts

Activity in Discussions

Unable to download new version

PA-440 running 10.1.13 update to 10.2.0, but when I download 10.2.0-h2  ......

admin@PA-440> request system software download version 10.2.0-h2

Download job enqueued with jobid 9
9

admin@PA-440> show jobs id 9

<response status="success"><result>Enqueu

...

Diabled Application in VSYS1

I have received an high risk alert on PA3250 IOS 9.1.16  "Disabled applications in vsys1: 104apci-unnumbered-startdt-act 104apci-unnumbered-startdt-con 104apci-unnumbered-stopdt-act 104apci-unnumbered-stopdt-con 104apci-unnumbered-test-act 104apci-un

...

Resolved! USER ID MAX USERS IN A GROUP???

Hello,

I've configured on PA5060 an Idenfication with AD:

PA5060: 4.1.6    USER ID AGENT : 4.1.4-3

LDAP SERVER 389

I do a group mapping  by group but this group have more than 16000 users.

when I do a show user usersIDS , I can't see all my users. I know

...

alle by L3 Networker
  • 12756 Views
  • 9 replies
  • 0 Likes

Can't install device certificate

Hello,

 

I'm trying to install a device certificate as instructed in the manual. 

I generate OTP using my account, I indeed see my valid serial number, get the OTP. 

Then I copy-paste to the firewall GUI and get the following error: 

 

I'm connected

...

Screenshot 2024-04-17 173742.png
YonatanG by L1 Bithead
  • 144 Views
  • 2 replies
  • 0 Likes

XSOAR Incident Re Run

soemtimes for testing purpose we need to create similar incident again but I am stuck at this phase. I have exisiting incident and i want to re run it(either manually create, duplicate and re run it or just simply re run exisitng incident, or importi

...

Syedhkt by L1 Bithead
  • 27 Views
  • 0 replies
  • 0 Likes

PBR using Route failover

Hi All,

 

Our organisation purchased two Mpls link and wants to configure an PBR like such

 

1) All intranet traffic like dns, ntp shoud go via primary MPLS

2) All internet related traffic should go via Secondary MPLS

3) In case Primary MPLS goes dow

...

TS agent SSL error

Hello, 

 

I've been trying to add a new TS agent on my firewalls. As there is no redistribution for user-{ip+port} mapping, I want to map the TS agent to 2 FWs. Backend FW is connected correctly, Frontend FW is in error.

I can capture the following betw

...

MMerlier by L1 Bithead
  • 3429 Views
  • 4 replies
  • 0 Likes

Elaboration on the differences between the PAN-OS root certificate, the device certificate, and the certificate under cert management?

I've been requested to get as much information as I can on this topic, and I've found a good one on Reddit.

A piece of info that i found on reddit

 

It's great, but somehow I still need much more elaboration on this.

 

Could anyone provide me a docum

...

thumbnail_1000001488.png
MFEC by L0 Member
  • 797 Views
  • 4 replies
  • 0 Likes

Query for CVE-2024-3400

Hello Team,

 

Work around is for mentioned vul is to install latest Applications and Threats content version

 

Applications and Threats content version 8833-8684 is already installed in our firewall, could you please confirm is our firewall affected?

...

Resolved! Upgrade PAN OS from 10.1 to 11.1

Hi Community,

 

My customer plan to upgrade their PAN OS from 10.1 to 11.1

From documentation said, You can now use the Skip Software Version Upgrade feature to skip software versions when upgrading your device from PAN-OS 10.1 or later releases.

Wh

...

HSutanto_0-1709107246673.png

Resolved! XSAOR with HA using Open search Upgrade

Hi Team,

The customer uses the XSOAR in High Availability using OpenSearch. and the number of app servers is 2.

So is it possible to upgrade the XSOAR not stopping the server?

 

For ex) Stop the App server 1 and upgrade the App server 1 first, an s

...