General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Chromebook usernames in Palo Alto logs.

Hi,

I was wanting to know if it is now possible to have the Palo Alto firewall log url traffic with the username from chromebooks.  It shows the username for all windows users as it syncs with AD, but can't get the chromebook users to show up.  I set

...

dholmes by L0 Member
  • 809 Views
  • 3 replies
  • 0 Likes

how to disable the url-cloud-connect

the customer firewall pa3220,version :10.2.1, the mgt interface could not access internet,so that firewall could not upgrade the url database.

but the system log dispaly some high log:url-cloud-connect-failure,the customer want don't see these log.

fir

...

Felixcao by L3 Networker
  • 2290 Views
  • 3 replies
  • 0 Likes

VPN event messages keep receiving

Hi,

I have two IPSec tunnel configured between Azure PA firewall and cisco router.

worried about continuously getting the informational event logs ikev2-nego-child-sart,  ikev2-nego-child-fail & ikev2-recv-p2-delete

Did the setting DH group to No PFS

...

VirupakshaRajapur_0-1691068863263.png

PA-5400, 3400 series DP memory check

Dear Team,

 

For existing firewall models, I can check the DP's memory through the 'tail follow yes dp-log dp-monitor.log' command.

 

However, new devices(PA-3400, PA-5400) do not have a dp-log path itself.

 

Is there a way to check dp memory on new

...

Resolved! Ha config not in sync

Hi Guys.

I have a Palo 220 in HA A/P managed by the panorama.

The customer made mgmt IP change and Added a Zone but then ever since the config is out of Sync Between the HA pairs.

So all the articles are referenced, request high-availability sync-to-

...

Pras by L4 Transporter
  • 1217 Views
  • 4 replies
  • 0 Likes

HSCI Link flapping

Hey all, I had to RMA one of my PA-3220s and rebuilt my HA just recently. After getting everything up to 9.1.11-h3 my HSCI link just doesn't stay up between the two 3220s. One side has green HSCI links, but the other side is dark.

 

-Replaced fiber j

...

DNS Sink Hole Data Base

Hello Gentlemen,

 

Could you please tell me where I can locate the DNS SinkHole database? I need to use it to determine whether a specific website is operating properly. Any suggestions on where I could look for that? Under DNS Sinkhole activities, a

...

Code On Firewall Not Mine

Hello,

 

I ran a config audit today and found some uncommitted code that was not mine. Is it possible that a dynamic update had some uncommitted code in the config?

Thanks

MJF

GlobalProtect SAML Metadata

Hi Experts,

 

I have configured Azure SAML SSO for GlobalProtect. When I try to export Metadata from PaloAlto FW for global-protect service, there is a mandatory section to select which virtual system. But in my case, there is no virtual system to sele

...

SAML metadata.PNG

Unable to connect to sysd

Hi

     I am trying to install PanOS 10.2.5 into Eve-ng. When i go to login i get the following error

 

I am running 8.1 no problem and have tried multiple images. I see in some websites to ignore the error but i cant even log in. Any help

would be

...

mzedalis_0-1697652044520.png
mzedalis by L0 Member
  • 894 Views
  • 1 replies
  • 0 Likes

Resolved! PAN-OS 10.2 PPPoE on Layer 3 Sub-Interface?

Is there any way to get PPPoE working on a Layer 3 sub-interface in Pan-OS v10.2?  I recently purchased a PA-220 for personal/study use.  My ISP, Century Link, provides Internet access via VLAN 201/PPPoE.  I'm currently running an ASA 5506 at the edg

...

  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels