General Articles
LIVEcommunity's General Articles area is home to how-to resources, technical documentation, and discussions with Accepted Solutions that turn into articles related to all Palo Alto Networks products.
173 PostsLIVEcommunity's General Articles area is home to how-to resources, technical documentation, and discussions with Accepted Solutions that turn into articles related to all Palo Alto Networks products.
173 PostsSupport FAQ on LIVEcommunity is where customers can find answers to their most common queries, in collaboration with Palo Alto Networks Knowledge Base.
8 PostsPanorama + Strata Cloud Manager: Your Network Security Management, Evolved The Reality for Panorama Customers With over 25,000 customers and 70,000+ active deployments, Panorama is one of the most widely deployed network security management platforms in the world. It serves as the central control point for firewall policy, device configuration...
Check out this Nominated Discussion by @JeanPaul222 (JeanPaul Mansour, Systems Engineer at Crestan International) This step-by-step implementation guide provides a practical Windows PowerShell workflow for generating an on-demand Best Practice Assessment (BPA) via the Palo Alto Networks Strata Cloud Manager Posture API—the programmatic path fo...
For network administrators, securing web traffic is a delicate balancing act between safety, privacy, and performance. This challenge is especially acute in educational institutions and enterprise environments enforcing strict workplace content policies. Historically, enforcing SafeSearch across major search engines forced administrators into fr...
Cloud NGFW for Azure now offers Standard and Premium SKUs to support different deployment sizes and requirements. In this video, we review the differences between the two options and demonstrate how to select a SKU during firewall creation or upgrade an existing Standard firewall to Premium.
Have you ever encountered discussions about planning a VM series upgrade or wondered about the fate of existing connections during a firewall upgrade? How can firewalls be upgraded with minimal impact and downtime? This article aims to address these queries and provide guidelines for an upgrade process. Modern businesses employ the Gateway Lo...
In my previous article, “Automating the Palo Alto NGFW's Process/Deamon Restarts,” I detailed how to orchestrate process restarts using TCL Expect paired with Bash scripts. While TCL Expect remains a classic approach for SSH-based network automation, modern engineering workflows are far better served by utilizing Python alongside the pexpect mod...
When PAN-OS is configured to use Strata Logging Service (SLS), administrators can choose between Single Forwarding and Dual Forwarding modes. While both options facilitate log delivery to SLS, they utilize entirely different delivery mechanisms and provide different operational guarantees. This distinction is critical if you observe logs that ...
Google Cloud Network Security Integration (NSI) Author - Nidhi Pandey This document provides a comprehensive overview of the Network Security Integration (NSI) deployment . This document describes an in-line traffic inspection architecture using Palo Alto Networks VM-Series Next-Generation Firewalls. The NSI deployment follows Google Cloud...
This article is a continuation of my previous one, 'Automating the Palo Alto NGFW's Process/Deamon Restarts'. While using TCL Expect is one of the classic methods for automating legacy devices, modern infrastructure demands more robust solutions like Ansible AWX for better scalability and management. 1. Overview 2. AWX ansible installatio...
One of the most common challenges administrators face when utilizing App-ID is the "Monday Morning Surprise": a new content update is installed, a broad application (like ssl) is refined into a more specific one (like acme-app), and suddenly, business-critical traffic is blocked by a default deny rule because the new App-ID hasn't been added to ...
Bring the fight to the edge. In an OT environment, defense is about time, and the edge is where you still have it. Joint research by Palo Alto Networks, Siemens, and the Idaho National Laboratory (INL) analyzed global telemetry from over 61,000 firewalls deployed in OT environments, alongside 20 years of historical incident data. The analysis ...
In today's complex threat landscape, a single layer of security is no longer sufficient. Attackers leverage multi-stage, evasive techniques to bypass traditional defenses. Palo Alto Networks addresses this challenge by integrating best-of-breed security services to provide a layered, defense-in-depth architecture. This article explores the pow...
In today's digital landscape, modern collaboration tools like WhatsApp Web are essential for business-to-consumer (B2C) communication. While they offer incredible speed, they also introduce a critical security challenge: how do you prevent sensitive data exfiltration through applications that use end-to-end encryption? This encryption creates a ...
Introduction: The AI-First Workplace In just three short years, Generative AI has transitioned from a viral curiosity to the fundamental operating system of the modern professional. As we enter 2026, the numbers paint a staggering picture of this shift: over 1.5 billion people now interact with standalone AI platforms monthly, and in the corpo...
We all know ChatGPT can write code and articles, but can it automate the specialized task of threat mitigation? We set out to test the capabilities of AI by asking it to generate a Palo Alto Networks custom signature. Before diving into the experiment, let's establish some foundational context on the technology that drives these platforms. C...

