Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24450 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

176 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

808 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

5004 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

660 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

581 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

4640 Posts

Activity in Discussions

CIE group (created on EntraID and Okta) visible in CIE but not recognized by PAN-OS firewall

Hi everyone, I’m troubleshooting a CIE group mapping issue on a firewall and would appreciate some advice. The setup is: PAN-OS 11.1.13-h9 Panorama-managed firewall CIE using Okta as the directory source Okta receives groups from both its own directory and MS Entra GP uses these groups in Portal Agent Config and Gateway configuration...

Meed by L0 Member
  • 23 Views
  • 0 replies
  • 0 Likes

XSIAM VPN Analytics

How do i get third party vpn logs to work with the xsiam analytics rules (https://cortex-docs.paloaltonetworks.com/analytics-alerts/alerts-by-data-source/third-party-vpns). These are vpn products for which xsiam doesn't have an in platform data model rule so I would have to create one. I need to know how to create one so that the analytics rules...

Cortex XSIAM/XDR - Java File Examination conflict in Policy

Hello Team,"We have observed that every agent upgraded to version 9.2.1.285 on Citrix devices (VDA, MCS) changes its status to "Partially Protected" after the cyserver restart.As the number of devices falling into this status has been increasing, we have temporarily modified the policy to prevent further upgrades on these systems until the issue...

Panorama GUI unresponsive

Good day All , I am currently unable to access the GUI of a Panorama , after further investigation I have found the below(show system software status) : Process dlsrvr stopped (pid: -1) - Exit Code: 1 Process websrvr stopped (pid: -1) - Exit Code: 1 I followed on to checking the disk-space and found root at 100% : P...

Ridwaan by L1 Bithead
  • 32 Views
  • 0 replies
  • 0 Likes

analyse d'un pc

Bonjour je voudrais savoir si avec la console cortex paloalto je peux faire une analyse d'un pc? En vous remerciant par avance. et si cela n'est pas possible comment je peux le faire si vous avez une procedure je suis preneuse . Merci a vous belle journée

SSL Decryption Issue on PA-520 Running PAN-OS 12.1.7-h3

We are experiencing an issue with SSL decryption on a PA-520 running PAN-OS 12.1.7-h3. After enabling decryption, the firewall operates normally for approximately three hours. However, over time, the number of decryption failures gradually increases until all new connections are rejected. Disabling decryption immediately restores normal operatio...

trojan/Win32.deceiver.d - False Positive?

I have noticed that PA NGFW sees this threat trojan/Win32.deceiver.d using Logon.exe from PCs in a specific zone (zone 1) going to our DCs that happen to be in a different zone (zone 2). I have had a couple of users say they have to type in their credentials a couple of times but we blamed DUO for that. In the Threat log I see only a few of th...

User-ID in FIPS-CC

Hello, I am having an issue setting up user-id when the firewall is in FIPS-CC mode. Here is the following issue: Environment: PA-3440, PAN-OS 11.2.10-h7, FIPS-CC mode enabled Windows User-ID Agent v11.0.3-134 (identical version on both hosts) Issue:I have two Windows-based User-ID Agents configured under Device > Data Redistribution &g...

PAN-OS 11.1.16, Unable to connect to VPN Portal or Gateway, winhttpObj, error!

We have a NGFW hosted by Rackspace in the US. Any new attempt to connect to the Global Protect gateway portal fails. We can ping and tracert to the I.P. address and domain of the gateway, but whenever we go to connect via the Global Protect VPN client or we attempt to go to the web portal via browser the connection fails with an EMPTY_RESPONSE. ...

josh by L0 Member
  • 110 Views
  • 1 replies
  • 0 Likes

How to check Cloud NGFW for Azure OS upgrade history

We are using Palo Alto Cloud NGFW for Azure and need to verify the OS/software upgrade details for our deployed firewalls. Could you please let us know: How to check the current PAN-OS/software version running on Cloud NGFW? Where can we find the OS upgrade start time and end time for previous upgrades? Are upgrade logs available in Azure Porta...