General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! IPSec tunnel slowness issue

Hi Folks,

 

We had recently configured an IPSec tunnel between the PA and the Cisco Meraki firewall. 

 

The PA firewall is located in India and the Cisco firewall is located in USA.

 

We are trying to upload an file from an Linux host located behind

...

Quic / HTTP/3 whats palo doing about this

Hi

 

Wondering what the road map is for allowing this - but safely - ie decrypting etc

looks to me like http/3 is going to be moving ahead and looking at a lot of the material its going to be very beneficial - especially in the space of speed / laten

...

Dual ISPs VPN failover across both

Trying to provide some tunnel redundancy to some of our AWS environments.  I have 2 ISPs both with an interface/static IPs on my HA PANs. ISP-A is my default with a default route to the internet pointing to its next hop.  


ISP- A Eth1/8 9.9.9.9/24 ZO

...

drewdown by L4 Transporter
  • 1599 Views
  • 2 replies
  • 0 Likes

Resolved! Issues with Dual ISP Failover

I followed these instructions to set up ISP failover : https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLL8CAO

 

When the primary ISP1 goes down, it does indeed fail over to secondary ISP2, in every respect except that traff

...

RSteffens by L3 Networker
  • 3245 Views
  • 3 replies
  • 0 Likes

Rule Shadow count not working

Hi, everyone. I'm currently working on a new config for a couple of firewalls, but everytime i commit my config I get rule shadow warnings (valid ones) but I can't use the count link to get a list of the shadowed rules. I'm running 10.1.6; is this a

...

CMachado_1-1660849741876.png
CMachado by L2 Linker
  • 1502 Views
  • 3 replies
  • 0 Likes

Resolved! Best practices - Multi large upgrades pan-os Firewall HA

 

Best practices - Multi large upgrades pan-os Firewall HA

 

Good afternoon, as usual, thank you very much for your support and collaboration.

We have the possibility with a customer to perform multiple upgrades in one day, maintenance window.

We nee

...

Metgatz by L4 Transporter
  • 2492 Views
  • 4 replies
  • 0 Likes

Vulnerability Profile in URL Filtering

Hi All,

 

 

So here's a question, when I use global find on the "strict" vulnerability profile (the one included in the software) it shows as being part of a URL filtering profile, is this because I have HTTP header insertion configured on that URL p

...

How to resume what I left off at Beacon

I started watching Firewall 10.2 Essentials: Configuration and Management (EDU210)

Does everyone know how to resume what I left off before? There is a resume button. When I clicked on it. It just went to Assessment test. However, I am sure I have not

...

alanwong by L0 Member
  • 1177 Views
  • 1 replies
  • 0 Likes

Support Portal - Not Able to Select the Asset

 

Hello,

I'm Support Portal Page >Support Cases >Get Help in that can't able select the assets   

 

Find Asset Tenant ID/ Serial 

 

We can find our device with serial number ; we can't able to select the particular device .



Please note you are posting...

GRE tunnel failover issue

Hi Community,

 

I am trying to set a GRE tunnel between Palo Alto PA-850-ZTP and zscaler.

Issue:

I have tunnel.1 and tunnel.2 created as Primary and Secondary. 

 

static routed default towards Internet.

 

GRE tunnel Primary and secondary configured

...

GauravSingh_1-1660652111162.png
GauravSingh_2-1660652222304.png
GauravSingh_0-1660652053031.png
GauravSingh_3-1660652596481.png

Day-zero Configuration of Palo-Alto

Hi All,

I heard day-zero configurations of the Palo-Alto firewall we can perform via the free service provided by Palo-Alto.

Do anybody having the visibility here.

Sujanya by L3 Networker
  • 1963 Views
  • 4 replies
  • 0 Likes

Resolved! PAN firewall HA and addition of same to Panorama

We are having an existing panorama in our network via which multiple production firewalls are managed  and in one of the location we are planning to implement two new firewall in HA ( active -passive) set-up.

question is : Do we need to add the firewa

...

Sujanya by L3 Networker
  • 2102 Views
  • 6 replies
  • 0 Likes

iCloud- Base App ID

Hi Team,

 

We are unable to see iCloud-uploading and iCloud-downloading Apps in our traffic logs, All the traffic identified as iCloud-base. 

 

Can someone help me on this ? 

  • 24232 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Posts
Top Liked Authors
Labels