Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24244 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

174 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

770 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

5662 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

641 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

542 Posts

Cloud Native Application Protection

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Cloud and Cloud Identity Engine discussions.

470 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

3895 Posts

Activity in Discussions

Chatgpt enteprise login only

How are people policing logins to Chatgpt for enterprise only logins?https://help.zscaler.com/zia/adding-tenant-profilesZscaler does it. Palo does it for microsoft.....How are people doing this with decryption and Palos native app id, NOT the ACE subscription?Is this possible?

Sec101 by L4 Transporter
  • 89 Views
  • 0 replies
  • 0 Likes

Excel downloads being blocked

In the last couple of days we've been getting reports from multiple users that they are being blocked from downloading .xlsx files from a cloud service. I can see that there are multiple entries in the Data Filtering log for each file, and then final one is showing a Threat ID of BIN file and being denied. Anyone seen anything similar?

Peter_Neville_0-1766139340125.png

Security Policy with Destination Criteria

We have created Security Policy with following criteria Source: User Destination Address : Any, URL Category: Worldwide URL, Tenant Restriction: Dropbox, Application: Any, Service: Application Default, and Action: Allow In This Scenario Any Traffic, Worldwide URL and Dropbox will be allowed or how it is?

Resolved! WTH is process 'touch' and hwy is it showing zombie?

Running show system resources, I see multiple instances of a process called 'touch' showing in a zombie state. I haven't been able to find anything about this process or what it does. Does anyone have any information on this? bmax@fw-ab-a(active)> show system resources top - 10:19:01 up 289 days, 14:35, 1 user, load average: 1.08, 0.84, 0....

bmcn678 by L0 Member
  • 178 Views
  • 1 replies
  • 0 Likes

Resolved! Which AWS Instance Type Meets VM-300 Requirements? Documentation Seems Inconsistent

I’m confused because there seems to be a contradiction in the documentation regarding the choice of AWS instance type for deploying a VM-300 using NGFW Software Credits.Could you clarify which AWS instance type meets the requirements for running VM-300? ■VM-Series Performance & Capacity on Public Clouds – VM-Series on Amazon Web Services Per...

HS Code and ECCN for PAN-PWR-50W-AC

Hello, we need the codes and numbers for above mentioned Power Supply. Is there a general doc,where all PAN product are included.Older links to such a doc failed. Many thanks.

djk_BG by L0 Member
  • 138 Views
  • 1 replies
  • 0 Likes

How does the Azure Virtual Network discovers that there is Palo Alto Gateway Interface

Hello, I am trying to wrap my head around the PA deployment in azure using PA Series. I am basically following this video on setting up 2 zones, 2 Virtual routers, and route rules.In my setup the two spoke vnets have UDR with 0.0.0.0/0 route to the trust interface of the PANFW. I created two VRs and associated with the Interfaces. I have also a...

rswarnkar_0-1766036895351.jpeg

PA Global Protect

I have 4 portals and 4 gateways (4 different PA fw/vm ) of a GlobalProtect. PA is integrated with azure (an azure app per each gateway).I added one more new portal and one more new subnet to the one of the existing gateways, a new dns a-record and a new azure app. ISSUE: Clients can't connect to this portal, it's getting stuck after connection a...

Tunnel Monitoring

Hello Team, I have two ISP for site A and site B. we have configured tunnel.1,2,3,4. for all the tunnels i configured tunnel monitoring for failover. My primary tunnel is up and working fine. However, all the backup tunnels are down the tunnel status are showing red. anyone tell me is this expected?

jhussain1_0-1765985998674.png
jhussain1_1-1765991082868.png

Resolved! linux /etc/iproute2/rt_tables filled with 231 pangp.include and 232 pangp.exclude

system:* fedora 43 x86-64 fully patched* GP client 6.3.3the linux file for giving routing tables a name is getting stuffed with the same things over and over. there were over 2100 duplicate entries!!# head /etc/iproute2/rt_tables 231 pangp.include 232 pangp.exclude 231 pangp.include 232 pangp.exclude 231 pangp.include 232 pangp.exclude 231 pangp...

User-ID mapping log is empty

I have setup all required steps, for user id mapping using user-id agent. the agent is working, I did all required configuration as per the guide line, and it is connected but the log is still empty the user-id agent log is working and have the data. but from firewall side it is not.

Tqpharma by L1 Bithead
  • 167 Views
  • 1 replies
  • 0 Likes