General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Join the Fuel User Spark Event on March 19: Dealing with Threats !

 

Join us at the Fuel User Group Spark Event on March 19!

 

Get ready to ignite your cybersecurity knowledge and connect with industry experts at our upcoming Spark event hosted by the Fuel User Group. Whether you're a seasoned professional or just

...

kiwi_0-1709893724672.jpeg
kiwi by Community Team Member
  • 280 Views
  • 1 replies
  • 2 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3161 Views
  • 2 replies
  • 14 Likes

NTP Best practices

Hello,

I have a PA firewall without panorama, at present I have public ntp servers in sync with pool.ntp.org which are default from PA. Is this good to use public NTP server or local NTP server ? Please let me know the best practices on this.

High Availability on ESXi for Panorama VM

Hi,
we will deploy panorama VM on esxi server, but only bought 1 panorama license.
So our users want to use high availability from the hypervisor Esxi. Im not familiar with esxi/vsphere.
The question is, if we trigger high avilability from E
...

dns-signature cloud service connection refused.

Greetings:

I am seeing in the System Log the following message "dns-signature cloud service connection refused"  Checking the traffic logs the management IP address is not being blocked.  Where do I look to resolve this error message?   Thank you.

Resolved! Rename Device Group via CLI

Hello,

As part of a large migration process we're maximizing the use of CLI to create configuration within NW, FW, HA dedicated templates, + template stacks + device groups.

One area that I'm having difficulty with is the renaming of existing device-

...

Session Expire Time one month

 

The session expiration time is more than a month apart.

 

I'm using the 10.1.8 version and my search says it's a firmware bug.

 

However, the same symptoms appear in version 10.2.1.

 

Is there a solution in relation to it?

qmso475_0-1694656400580.png
qmso475 by L3 Networker
  • 578 Views
  • 2 replies
  • 0 Likes

Commit Error

Hello.

 

After adding the allowed IP band, I pressed Save, but it is failing.

 

 

 

 

qmso475_0-1694679455987.png
qmso475_1-1694679479302.png
qmso475_2-1694679505579.png
qmso475 by L3 Networker
  • 319 Views
  • 1 replies
  • 0 Likes

URL Logging - only custom allowed domains are showing up

Hi there,

 

I'm trying to get URL logging to work.

 

At first: I don't have the advanced url filtering license, maybe that's why....

 

I have got a custom url category with some domains which I want to allow, those urls in this list are logged fine.

...

url-list.png
Netzer by L2 Linker
  • 574 Views
  • 3 replies
  • 0 Likes

Resolved! Global Protect message is CN name mismatch.

Hello everyone.

Global Protect message is "The certificate CN name mismatch, The certificate is not issued to x.x.x.x" when I connect GP.

I configure to import certificate that issurer is Go Daddy Secure CA.

Why does CN name mismatch???

Resolved! Reports

Hi everybody.

 

When I got the report from palo alto the following problem occurs ( b'    ' ).

This report is in PDF format and cannot be edited. There was an extract of the report before, but there was no such problem.


b'Risk'    b'Application'    b

...

Fagani by L2 Linker
  • 432 Views
  • 1 replies
  • 0 Likes

Session count can't break 1025

Hi all, I am running a VM-series on aws and it has a issue with session, it's cannot break 1025. I'm new to Palo Alto so there are many term i really don't understand. Some body please tell me what is Active Session? Is it Session count on UI? Why ca

...

ahcogn1_0-1689301370235.png
ahcogn1 by L0 Member
  • 912 Views
  • 5 replies
  • 0 Likes

Device Certificate not showing

Hello Guys,

 

I have problem with device certificate, i have create the device certificate, but is not showing in GUI Palo Alto.

but when i try to import configuration the certificate is showing.

anyone can help me why device certificate is not showing i

...

dwi.nur by L1 Bithead
  • 9574 Views
  • 13 replies
  • 0 Likes
  • 24090 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels