General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Log redistribution after adding additional log disk.

Recently we added a 2TB log disk to this virtual Panorama running 8.1.19 on VMWare ESXi 6.5

 

 

Once adding, the log redistribution process on the local log collector started as has been progressing very slowly. Over the course of 15 hours this job prog

...

Resolved! Global Protect MFA Vendor Support

I am a bit confused with the MFA vendor supported by the firewall, because the Compatibility Matrix says that  MFA server profile is not supported for Global Protect?

https://docs.paloaltonetworks.com/compatibility-matrix/mfa-vendor-support/mfa-vendor

...

BatD by L4 Transporter
  • 7641 Views
  • 6 replies
  • 0 Likes

Is there CLI - Enable and Commit Policy

Dear all, 

 

Since my WebUI is not responding even with a system reboot and management restart by CLI,  SSH works fine, 

 

Is there a way by CLI to enable and commit Policy?

 

Any help would be greatful.

 

Thanks, 

Sean

Resolved! RADIUS And Open LDAP Integration.

Hi team,

 

I have come through as a requirement from one of my clients, They are using RADIUS Server for RSA authentication for globalprotect, but in USER ID they are using OpenLDAP, So in the ip-user-mapping, Whenever user connecting to globalprotect,

...

PA blocking windows updates?

Howdy,

 

Trying to figure this out. It almost seems that our pa220 is blocking windows updates. See my first pic, does session end reason threat mean it stopped the connection? I ask because I cannot get this update to download on any windows 10 pc in

...

fw1.JPG
fw2.JPG

Resolved! IPSec tunnel creation issue

Hello all, 

one of our customer is trying to create the IPSec tunnel between PA and Fortigate. When phase 1 is initiating in main mode negotiation failed error and we find error in system logs:

 2020-02-18 14:55:18.010 +0200 [PERR]: { 12: }: Expecting

...

Logesh by L1 Bithead
  • 11889 Views
  • 9 replies
  • 0 Likes

Resolved! MP CPU is a lot higher in GUI than what CLI shows

We have a pair of PA-VM, vm300 in Azure.  it's got 16vCPU and 65G of RAM.  When I look at the "System Resources" in GUI, it is consistently above 85% and peaked to 100% from time to time.

 

In CLI, "show system resources" shows it's hardly doing anythi

...

gangqu by L1 Bithead
  • 1941 Views
  • 1 replies
  • 0 Likes

SSL Inspection for Chromebooks

I was having some trouble with SSL decryption on my chromebooks and after a bit of Google searching I came across this Google article and I wanted to share with others since there was nothing like this in the community. If I didn't exclude these when

...

bbilut by L3 Networker
  • 5897 Views
  • 2 replies
  • 6 Likes

Resolved! GlobalProtect, Working from Home, Prisma Access and Covid-19

To all, 

Just wanted to post a message about the Hot Topic right now, which is Covid-19. 

With all of this going around, everybody's health and safely is the utmost concern. Keeping your hands clean, washing your hands (A LOT), using hand sanitizers,

...

jdelio by L7 Applicator
  • 40558 Views
  • 43 replies
  • 33 Likes

Resolved! PBF is working, but I want to exclude GP

Hello everyone,

 

New here and fighting with my new PA-820.

 

I have 2 ISP's and I want to make the best use possible of those two.

So I created a PBF which reroutes HTTP and HTTPS traffic over the 2nd modem.

Now I have speeds over 350mbit/s for clients an

...

traffic drop for website for some time

im facing issue when accessing website which is hosted on cloud.i have created object of website and called in policy . this issue occurs when i have called object in destination and im trying to access website .

 

if i have access this website as dest

...

SurajN_0-1629302616883.png
SurajN_1-1629302708937.png
SurajN by L2 Linker
  • 1397 Views
  • 1 replies
  • 0 Likes
  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels