General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

SSO not working properly

I have just setup SSO in our new eng panorama. When I tested it initially it gave me the error message "Error Displaying SAML error response page". I reached out to our team and it was noticed that the new saml app had fewer claims and attributes tha

...

Bumenang by L1 Bithead
  • 2611 Views
  • 1 replies
  • 1 Likes

Resolved! Moving some connections to the New PA

 

We have this setup for one site 

 

------Dis sw--------------Edge switch stack of 3 ----------40 users 

 

we need to move few users behind the PA  .

 

what can be best design for this as we only need to have 5 to 10 users behind the PA  850.?

 

Should we co

...

MP18 by Cyber Elite
  • 4741 Views
  • 15 replies
  • 0 Likes

Certificate delete

Hi

 

i have a problem certificate delete. But sow error Failed to delete Certificate - CaptivePortal.  °  CaptivePortal cannot be deleted because of references from:

 

i look to to ssl/tls service profile list not show profiles. plase help mee 

btadmin by L1 Bithead
  • 904 Views
  • 6 replies
  • 0 Likes

Clarification on App Rule - I thought I understood this

I recently moved a firewall into being managed by Panorama.  I setup an Application rule specifying the application as PANORAMA which includes the ports necessary (I assumed) for Panorama communications but the firewall could not be added successfull

...

Resolved! Prisma Cloud Workload Protection

Hello,

I'm playing with the API to get hosts' vulnerabilities and images' vulnerabilities in Prisma Cloud (CWPP) (documentation: https://pan.dev/prisma-cloud/api/cwpp/get-images/)

Following the documentation (which is great by the way) I noticed ther

...

Suspicious URL detection by cortex

Hi All,

 

Will cortex be able to detect if there is any malicious URL clicked by user?

Also, would like to know how cortex detect the ransomware attack.

 

Regards,

Sakshi Seth

 

Proxy SG to Palo alto policy migration

Hi,

 

Is there any automation tool through which we can migrate all our proxy SG policy rule, object and object group to Palo alto. Or else if there is any alternate option then please let me know.

Global Protect Linux and Strongswan

 

I had to test IPSec connection on Linux using strongswan as part of a support case i was working on and i collected a lot of good information on how to get this working. So i thought i would share it with you.

 

Tested on PANOS 7.1.2, Ubuntu 16.04, St

...

Xauth Option.png
ipsec.png
Client Success.png
system Logs.PNG
Davyboy by L1 Bithead
  • 11302 Views
  • 4 replies
  • 3 Likes

Cortex XDR agent change managing server

Hi All,

Looking for best way to migrate cortex XDR agents to new tenant in bulk.
I have downloaded all the hostnames in excel format and when i try to paste it on the XDr console filter section it doesnt work.

Please comment

Resolved! HOW TO CONFIGURE .1q - VLAN TRUNK

     Hi guys ,


I have a lots of doubts about how to configure .1q vlan TAG / TRUNK on PALO ALTO FIREWALL.

It`s possible to work with layer 3 interface ?
I don`t found any documents here.


Does anyone have something to help me.

Nbest Regards


THiago LIma.

Thiago by L3 Networker
  • 2476 Views
  • 2 replies
  • 0 Likes

Resolved! Disable weak cipher suites for SSL/TLS and SSH

Hi Team,

 

I want to Disable weak cipher suites for SSL/TLS and SSH

 

my question is, are the below commands correct ?

 

Do I need to run below commands on Active and Passive firewalls separately ?

 

I am using data port as management ( I do have dedicated m

...

shafi021 by L2 Linker
  • 27612 Views
  • 8 replies
  • 0 Likes
  • 24195 Posts
  • 100 Subscriptions
Top Liked Authors
Labels