General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

The dreaded User-ID, Dynamic TAGS, XMLAPI and Multi-vsys

Hi Community, my first post so hopefully I am in the right area.

I am running a multi-vsys setup with 5220's in Active-Active HA and using XMLAPI calls from Aruba ClearPass to send login/logout info as well as tags for use in dynamic object groups. It

...

gfirth77 by L0 Member
  • 1875 Views
  • 1 replies
  • 1 Likes

Zone protection for VM series

Hi everyone,

 

I was looking for PA best practices for  VM series' zone protection but only found documents that talked about physical PA.

 

1. Are physical and VM series zone protection the same? could you point me where the docs for these are?

2. U

...

tinhnho by L2 Linker
  • 1607 Views
  • 6 replies
  • 0 Likes

SSL decryption and AppID

Today we use "ssl" AppID in firewall rules. In case we would enable SSL decryption, is it needed to add the AppIDs of the decrypted traffic to the firewall rules, e.g. web-browsing, java, flash, or is the AppID staying "ssl" even when traffic is decr

...

Anon1 by L4 Transporter
  • 8775 Views
  • 10 replies
  • 0 Likes

Resolved! Configure second DUO for PA firewall MFA

We have configured a DUO Proxy server for PA firewall MFA and it works. We also configured the second DUO proxy server for redundancy. However, we don't know how to configure PA firewall to failover to the second DUO in a case the primary DUO proxy s

...

boblin by L2 Linker
  • 3409 Views
  • 16 replies
  • 0 Likes

10.0.4.vm.eval shutting down - vmware workstation

Anyone had luck running 10.0.4 vm eval on vmware workstation?

It shuts down right after initial startup, before I get a chance to login in console.

There's more than enough CPU/RAM/Storage. Network Adapters are configured properly.

10.0.0 vm works fi

...

PanOS 11.0.1 DHCPv6 issues after reboot

Hi everyone,

 

I configured a PA440 as a DHCPv6 Client and a Fritzbox 3390 as the DHCPv6 Server (with IA_PD & IA_NA).

I also configured an inherited interface.

The configuration is the same as here: https://docs.paloaltonetworks.com/pan-os/11-0/pan-o

...

JanHend by L0 Member
  • 1385 Views
  • 2 replies
  • 0 Likes

Resolved! SSL Decryption Session is Full

Hello all, 

 

When the SSL Decryption Session is full, the customer asks how the non-decryption traffic is handled.

We need information about whether the lack of resources is causing random drops or not being affected.

The current model is VM-700, VM-3

...

Application Catagory is not working

Hi Team, 

 

We are facing issue with the firewall policy is not working,

 

we have a backup server(Acronics) that we neeet to allow communicaion between agent and server

 

we have create a access policy for the communication but once we remove the co

...

VINAYAKJ by L0 Member
  • 948 Views
  • 1 replies
  • 0 Likes

Customer portal login Issue

Geeting message "Your membership has expired or has not been approved, please contact Palo Alto Networks Support." while trying to raise Case in palo alto network portal.

PrabhuC by L0 Member
  • 1341 Views
  • 3 replies
  • 0 Likes
  • 24204 Posts
  • 100 Subscriptions
Top Liked Authors
Labels