Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24411 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

176 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

804 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

5203 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

655 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

575 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

4602 Posts

Activity in Discussions

Issues with connectivity between HA PAs and Nexus Leaf Switches

I've inherited a setup which has PAs with two vsys each connecting:external switch/router > PA external vsys > A10 Load Balancers > PA internal vsys > Cisco Nexus Leaf switches We run a full mesh setup (1x interface from each side of the PA HA pair to each (upstream switch, external A10, internal A10) internal device, both primary an...

Network wifi Management

Please, I'm very new to the field of networking but I need help. How can you manage your wifi network. By allowing a certain set of people to have access and blocked the rest. Even if they all have access to the WiFi password?. I really do need help on it. We're all on the same network but needs to block some set of people and let some set of...

URL FILTERING

Hello Team, i cannot block website torrent like cpasbien, torrent9. even i use url filtering. My license is okay

Indicator Extraction Refresh

We're migrating from playbook task enrichment per incident to auto-extraction leveraging the TIM. One such example is a playbook !extractIndicators text=${incident.sourceip} auto-extract=inline Alternatively, I've also tried configuring the incident type to extract IP-recognized indicators automatically on Source IP field. Both options work fi...

Trial Access for Cortex XDR

We're working on integrating Cortex XDR login with our system and would like to test the access management/SSO integration before rolling it out further. Could you let us know: Whether a trial version of Cortex XDR is available that we could use for integration testing, and If not, what alternative options exist for testing the access managemen...

antons by L0 Member
  • 58 Views
  • 3 replies
  • 0 Likes

Terminal Server Agent issues with CCH Engagement

Hi everyone, we recently deployed Terminal Server Agents on our AVD Hosts. We're having issues with about 3-5 users that use CCH Engagement. Users would get the below errors when trying to open binders: We also increased the minimum port allocation size from 200 to 500 and changed the source port allocation range to 25000–45000. From our obs...

RPerez481389_0-1784765718878.png
RPerez481389_1-1784765772928.png

Important Update: GlobalProtect App 6.2.8-h12 [6.2.8-c1032] & GlobalProtect App 6.3.3-h13 [6.3.3-c1105] Release Availability

Hey Team, Please be aware that our Product Team has been notified of HIP related issues within the recently released versions of 6.2.8-h12 [6.2.8-c1032] and 6.3.3-h13 [6.3.3-c1105]. Please refer to the following document that discusses how to verify if you match the criteria to be impacted by this and the necessary steps to resolve this if so:...

PANOS Global Protect Azure SAML w/ Self-Signed Certifcate on Firewall

Looking to see if anyone has done the above configuration. Essentially 2 sets of firewalls, 2 locations, managed in Panorama. I created the portal on 1 set, using a self-signed certificate on the firewall (used the PA-VM as the CA and then issued itself a certificate). Created 1 gateway on the local VM, then planned to issue the remote VM a c...

DJ_1924 by L2 Linker
  • 58 Views
  • 0 replies
  • 0 Likes

"Your login session has expired" errors when authenticating to GP portal

Dear community! We are currently experiencing an issue where after authenticating to the globalprotect portal page with the browser, we get the following message :"“Your login session has expired and you have been logged out for security reasons...” And we cannot get to the portal page. It only works with Mozilla firefox or Edge in IE compa...

Carracido_0-1784638080115.png
Carracido by L4 Transporter
  • 57 Views
  • 0 replies
  • 0 Likes

GlobalProtect Linux client recreates a "GP_HTML" folder in home directory on every start

Hi all, I'm running into a persistent annoyance with the GlobalProtect Linux client. Environment:- GlobalProtect version: 6.2.9-407- OS: Ubuntu (kernel 6.17.0-35-generic, 24.04-based)- Architecture: x86_64 Issue:Every time the GlobalProtect client starts, it creates a folder named `GP_HTML` directly in my home directory (`~/GP_HTML`). This happe...

Best Practice for Managing Short-Lived Public Certificates on Panorama-Managed Firewalls?

Hi everyone, With the industry moving toward shorter validity periods for publicly issued SSL/TLS certificates, I'm trying to plan ahead for certificate management on our Palo Alto firewalls. We have several firewalls that are managed through Panorama, and some of them will also be using SAML for authentication. Since public certificates will ne...

Sizing help — university internet edge, 3 Gbps today, 4,000–5,000 students, 7-year lifespan. PA-3430 / PA-3440 / PA-5410?

Looking for sizing advice from anyone running PAN at a university/campus internet edge. Environment: University with 4,000–5,000 students plus staff/faculty Current internet bandwidth: 3 Gbps — expect this to grow substantially over the appliance's life (bandwidth per student keeps climbing; wouldn't be surprised to hit 8–10 Gbps by end of life...

simsim by L4 Transporter
  • 71 Views
  • 0 replies
  • 0 Likes