Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24286 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

175 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

778 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

5716 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

645 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

546 Posts

Cloud Native Application Protection

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Cloud and Cloud Identity Engine discussions.

470 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

3942 Posts

Activity in Discussions

No ping response from AAD

I have a rule in Palo Alto PA 440 running 11.2.6 to allow 'any' to Azure AD. I see only DNS responses from Azure AD. For ping and LDAP packets received is zero. The traffic is hitting the right rule though. I did a packet capture I don't see ping request on the transmit stage on the firewall. Ping and LDAP working from another site. How do I fix...

Website unreachable

hi my customer got an issue regarding palo alto. This issue happens thismorning, no changes was done beforehand. The website was still accessibleyesterday until this morning. We have done a few testingsas per below. Office LAN users – Notaccessible Bypass website’s Public IP– Not accessible Bypass website URL – Notaccessible Wi-Fi users – Acce...

Support with PA-440 Software

Dear all, I have a pair of HA PA-440 with the software version of 11.2.7-h4, now I want to install the version 11.2.10-h2 to remediate CVE-(High Severity Vulnerability in PAN-OS) and (Customer Advisory on Device Certificate Renewal for NGFW Devices in Active-Passive High Availability (HA) with Service Route) Now I want to install software ve...

XQL query to get a list of current applications installed on hosts

Hello everyone, Our team is trying to utilize the XDR host inventory dataset to gather details on what applications are installed on each host. We’re encountering an issue with Cortex XDR Host Inventory queries returning stale host data, which is producing duplicate host/application sets in our results. Is anyone aware of how we can resolve ...

GP connction failed

we had an internet outage at out data center this last monday. it dropped all users off VPN. the users are trained that if they cant connect to production VPN to try the DR site VPN. only about 1/3 of the users were able to connect to the DRVPN. the rest got a message "The network connection is unreachable or the portal is unresponsive. Che...

Azure to OnPrem Connectivity issue

We have migrated our on-premises firewall from FortiGate to Palo Alto and are experiencing an issue with VPN traffic routing that previously worked as expected. We have an Azure Point-to-Site (P2S) VPN and an Azure-to-Corporate Site-to-Site (S2S) VPN. A P2S client with IP address 10.40.1.2 is unable to access resources on the Corporate LAN (19...

H.Thiam by L1 Bithead
  • 611 Views
  • 1 replies
  • 0 Likes

Resolved! Discord voice chat no longer connecting after PA-440 install

Hi all, I recently added a PA-440 to my home network, everything seems to be working fine with the rules I have set up (Just allowing all from the internal zone to the external zone at the moment) however Discord voice chats fail to connect. I took a look at the traffic logs and saw a lot of packets "aging-out" so I changed the timeout of what I...

Panorama SDWAN

Hi I have list of branch firewall and hub firewall in the SDWAN group managed through the panorama if i removed one particular firewall from the SDWAN group will it lost it's connectivity on the panorama

Global Protect Portal / Clientless VPN does not recognize SAML username after update to 10.1.14-h20

After updating our firewall from 10.1.13 to 10.1.14-h20 as per CVE-2026-0227, it's no longer possible to access the GP Portal via a web browser: the authentication via SAML continues to work but now gives back an error page. Checking the GlobalProtect log gives the error message "Username from SAML SSO response is different from the input". ...

mszczuka by L0 Member
  • 407 Views
  • 0 replies
  • 0 Likes

Issue after onboard Azure VM into SCM

Hi, Setting up a lab by provisioning a Palo BYOL VM Firewall in Azure and setup a simple Trust and Untrust zones. I also have a Win 10 VM in the trust zone which connects to internet through the Firewall. All of them are in the same Vnet with different Trust and Untrust in different subnets. All work good. However, when I onboard the firewal...

I have concern in SDWAN, Kindly help out this.

1. Currently, four tunnels (at each of the two Hubs) are used for the four IPsec tunnels between these two Hubs (based on two SDWAN circuits at each Hub). Can the four existing tunnels (labelled tunnel.50xx) at both existing hubs (CHT and ELP) be used for the new IPsec tunnels to/from Agave2? 2. Can we use IP addresses assigned directly to int...

gp Always disconnect

I've been using GP recently and it keeps disconnecting and reconnecting.I'm sure my network is working properly.I checked the pas log:(P1336-T19828)Debug(2485): 01/22/26 21:59:49:665 Received a tunnel packet with fragment 0x8D(P1336-T4260)Debug(1047): 01/22/26 21:59:50:828 select() timeouts, retry(P1336-T4260)Debug(1047): 01/22/26 21:59:51:840 s...

Juns_Net by L1 Bithead
  • 487 Views
  • 2 replies
  • 0 Likes