General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 95 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3336 Views
  • 2 replies
  • 14 Likes

PA-5400, 3400 series DP memory check

Dear Team,

 

For existing firewall models, I can check the DP's memory through the 'tail follow yes dp-log dp-monitor.log' command.

 

However, new devices(PA-3400, PA-5400) do not have a dp-log path itself.

 

Is there a way to check dp memory on new

...

Resolved! Ha config not in sync

Hi Guys.

I have a Palo 220 in HA A/P managed by the panorama.

The customer made mgmt IP change and Added a Zone but then ever since the config is out of Sync Between the HA pairs.

So all the articles are referenced, request high-availability sync-to-

...

Pras by L4 Transporter
  • 1055 Views
  • 4 replies
  • 0 Likes

HSCI Link flapping

Hey all, I had to RMA one of my PA-3220s and rebuilt my HA just recently. After getting everything up to 9.1.11-h3 my HSCI link just doesn't stay up between the two 3220s. One side has green HSCI links, but the other side is dark.

 

-Replaced fiber j

...

DNS Sink Hole Data Base

Hello Gentlemen,

 

Could you please tell me where I can locate the DNS SinkHole database? I need to use it to determine whether a specific website is operating properly. Any suggestions on where I could look for that? Under DNS Sinkhole activities, a

...

Code On Firewall Not Mine

Hello,

 

I ran a config audit today and found some uncommitted code that was not mine. Is it possible that a dynamic update had some uncommitted code in the config?

Thanks

MJF

GlobalProtect SAML Metadata

Hi Experts,

 

I have configured Azure SAML SSO for GlobalProtect. When I try to export Metadata from PaloAlto FW for global-protect service, there is a mandatory section to select which virtual system. But in my case, there is no virtual system to sele

...

SAML metadata.PNG

Unable to connect to sysd

Hi

     I am trying to install PanOS 10.2.5 into Eve-ng. When i go to login i get the following error

 

I am running 8.1 no problem and have tried multiple images. I see in some websites to ignore the error but i cant even log in. Any help

would be

...

mzedalis_0-1697652044520.png
mzedalis by L0 Member
  • 772 Views
  • 1 replies
  • 0 Likes

Resolved! PAN-OS 10.2 PPPoE on Layer 3 Sub-Interface?

Is there any way to get PPPoE working on a Layer 3 sub-interface in Pan-OS v10.2?  I recently purchased a PA-220 for personal/study use.  My ISP, Century Link, provides Internet access via VLAN 201/PPPoE.  I'm currently running an ASA 5506 at the edg

...

Panorama Minimum Requirements for AWS Deployment

Hi all,

 

I am new to Panorama management, and I am specing out a new deployment for a client.

 

1 - VM PA in AWS

1 - PA 440 for Office

 

We want to manage the VM and 440 PA with Panorama. Looking at the AWS deployment documentation 

https://docs.pal

...

sethcd by L0 Member
  • 506 Views
  • 3 replies
  • 0 Likes

Policy-Based IPsec VPN Failover

Hello everyone,

I have a case, where we have configured two site-to-site VPN connections to our partner's primary and backup datacenters. Both tunnels are policy-based IPsec VPNs with Proxy-IDs configured and both use the same local/remote inner IP a

...

Flang3r by L2 Linker
  • 4757 Views
  • 15 replies
  • 0 Likes

Use of HA2 and HA3 port Active-Active-Active

Hello,
We have changed PA-5220(10.1.6-h6) by the PA-3420(10.2.5) , and we have detected that much more traffic is being sent by the HA2 and HA3 ports.
Being unbalanced, it saturates a port of HA2 and may cause an error in the synchronization of sessio

...

Alpalo by L4 Transporter
  • 366 Views
  • 1 replies
  • 0 Likes
  • 24127 Posts
  • 100 Subscriptions
Top Solution Authors
Labels