General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

[SOLVED] Prisma Access Panorama-Managed The Serviceability Commands Are Not Working!!

Hello LiveCommunity Team! I created this post to share my experience with an issue regarding the *Serviceability Commands* function in version 6.1.0-h7 of the Panorama Cloud Service plugin. My client reports that this function is not operating as expected; the EDL and routing information sections appear empty, do not allow the selection of speci...

DanielSRomero_0-1785964009584.png
DanielSRomero_2-1785964529454.png

SAML SSO Admins Cannot Install Software Updates - "You don't have superuser access"

Hello Everyone, We are troubleshooting an issue where administrators authenticated through Microsoft Entra ID (Azure AD) SAML SSO are unable to install PAN-OS software updates. Environment: Palo Alto Firewall Microsoft Entra ID SAML SSO Authentication Profile configured with: Admin Role Attribute: adminrole Entra ID SAML Claim: adminrole ...

VM100 SCM support

Hi, looking for some clarification on VM100 SCM support. I have a customer who has onboarded two VM100s (HA pair) and is currently managing their configuration via SCM. No issues there, however when we look at the Dashboard there is no evidence of these devices at all. Other firewalls are showing, but the VM100s are missing. Telemetry appears ...

Resolved! EOS devices and License Relationship. (PA-220)

Hi, I am worried about PA-220 EOS. I have PA-220 and bought 5 licenses. (Threat Prevention, GlobalProtect Gateway, PAN-DB URL Filtering, WildFire License, Premium Partner Support) As described in the link below, our device is EOS. But not EOL. https://www.paloaltonetworks.com/services/support/end-of-life-announcements/hardware-end-of-life-...

tsenturk by L0 Member
  • 3899 Views
  • 4 replies
  • 0 Likes

Resolved! Server Monitoring Not Connected

Hello, Microsoft AD under Server Monitoring is showing as 'not connected.'We would like to use the PAN-OS Integrated User-ID AgentOutput from debug commands show UserID Debug Log is enabled but nothing is logging. Anyone encountered similar issue?

Resolved! PA Active/Passive and Cisco stacking LACP

hello, we have setup Active/ Passive connected with cisco stacking 9500 with four links full-mesh as shown below: Paloalto active: PA(active) AE1 ========= cisco-1 switch (Etherchanel 10) PA(active) AE1 ========= cisco-2 switch (Etherchanel 20) Paloalto Passive: PA(passive) AE1 ========= cisco-1 switch (Etherchanel 10) PA(passive) AE1 ...

Prisma Access HIP object Windows patch management

We have created a HIP profile and configured windows patch management. However, the options under this is not very clear. I have to get some clarifications on thisMissing Patches - Severity When the operator is set to Greater Than or Equal To, what values are valid in the field? We currently use 3, assuming this represents Critical Windows sec...

K.Herath by L0 Member
  • 105 Views
  • 1 replies
  • 0 Likes

Issue with GP Access for JIO Users on PA-820

Dear Friends, One of our customer is facing an issue with users on PA-820. According to the customer, many users are connecting to the internet via mobile hotspot using JIO SIM cards. While they can successfully connect to GlobalProtect, but they are unable to access internal servers.This issue is specific to users who are using JIO SIM cards ...

Resolved! Warning: External Dynamic List XXX is configured with no certificate profile

Hi all, I've been following this Article but I've run into an issue. When I try to edit an existing EDL and assign the Certificate Profile I created, the dropdown only shows "None (Disable Cert profile)" — the new certificate profile isn't listed as an option. However, when I create a brand new EDL, the certificate profile I created is available...

MaratP by L1 Bithead
  • 1180 Views
  • 3 replies
  • 0 Likes

Site to site VPN between PA & Azure || Failover / HIgh availability

We have configured two Site-to-Site VPN tunnels between our Palo Alto firewall and Azure VPN Gateway to provide redundancy and high availability. However, we are encountering an issue where we are unable to keep both VPN tunnels active simultaneously: When both VPN tunnels are up, connectivity between our on-premises environment and Azure becom...

Resolved! Network wifi Management

Please, I'm very new to the field of networking but I need help. How can you manage your wifi network. By allowing a certain set of people to have access and blocked the rest. Even if they all have access to the WiFi password?. I really do need help on it. We're all on the same network but needs to block some set of people and let some set of...

GlobalProtect is no longer able to retrieve information for Trend Micro Apex One Security Agent

We are experiencing an issue where GlobalProtect is no longer able to retrieve information for Trend Micro Apex One Security Agent. As a result, our HIP Objects that rely on this product are no longer matching correctly, and we cannot enforce the related security policies. Everything was working as expected until 17 June 2026, when the issue app...

  • 24419 Posts
  • 125 Subscriptions
Top Solution Authors
Labels