General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

More disk on panorama in esxi for logs

is this the instructions to use to get more logging space on panorama VM running in panorama mode?

 

https://docs.paloaltonetworks.com/panorama/9-1/panorama-admin/set-up-panorama/set-up-the-panorama-virtual-appliance/expand-log-storage-capacity-on-th

...

Resolved! Retention period for traffic logs on Panorama

Hello Experts

 

What is the rention period for traffic logs on Panorama, I mean how many days it will keep the traffic logs from firewall. Actually I need to do the harden the security rules by looking the traffic logs.

ghostrider by L4 Transporter
  • 21148 Views
  • 11 replies
  • 0 Likes

RFC1918 addresses inbound to untrust interface

I have a pair of palos in azure, they are frontheaded by a LB. I also have a VPN gateway in the gateway subnet of the vnet where these components live. Not ideal but I am trying to connect a legacy vWAN hub to a new landing zone. I have a VPN from ol

...

Resolved! Export/Import Named Configuration Snapshot

Hi everyone!

 

Can someone confirm that the subject can only be done by "superuser" account?

I can't find any documentation that says so. I'm wondering because "export device state" is visible for superuser account, when using a "device administrator

...

Resolved! Proxy ID's and routes needed?

Team,

 

If I am building a tunnel to a Policy Based device and I configure Proxy ID's do I need to add routes for the VPN as well on the Palo?

 

Or just Proxy IDs?

SCEP for firewall device cert?

We do not currently have SCEP set up in our environment nor are we familiar with it. But if we did have it set up would our PA firewalls be able to request a cert that we could then use in a SSL/TLS service profile to have a secure connection between

...

Claw4609 by L4 Transporter
  • 989 Views
  • 1 replies
  • 0 Likes

Resolved! URL Blank in Traffic Logs

The traffic logs for our PAs almost never actually show a URL, despite the URL category getting properly assigned. The only time I ever see a URL show up in the logs is if it is specifically denied because of the URL category, which is fairly rare. I

...

Resolved! Accessing A New Palo Alto Firewall In The GCP

Experts.,

 

We have a virtual Palo Alto firewall (BYOL) in the GCP and were able to change password using the initial access and the ppk file.

We provisioned one more VM firewall in same GCP setup, however this time we are unable to recreate the steps w

...

kgsd2019 by L1 Bithead
  • 4795 Views
  • 7 replies
  • 0 Likes

Resolved! About User-ID Agent

Hello,

 

I've been practicing Palo Alto lately, I'm having trouble setting up "User-ID Agent"...
This is my simple structure :

I set up "AD server" and "User-ID Agent" on the same Winserver

I also added Win10 to domain, and gave it an account (michae

...

young19918_1-1681749791819.png
young19918_2-1681750176934.png
  • 24195 Posts
  • 100 Subscriptions
Top Liked Authors
Labels