Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Discussions
Check out LIVEcommunity discussions to find answers, get support, and share knowledge related to Palo Alto Networks tools and products.

Browse the Community

General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

24422 Posts

Custom Signatures

The Custom Signatures discussion is a resource for security professionals to discuss the creation process of custom signatures in their PAN-OS appliance.

176 Posts

VirusTotal

Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.

804 Posts

Network Security

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

4965 Posts

Cloud Delivered Security Services

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Palo Alto Networks’ Cloud Delivered Security Services.

655 Posts

Secure Access Service Edge

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Prisma Access and Prisma SD-WAN.

578 Posts

Security Operations

Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to Cortex XDR, XSOAR, and Xpanse discussions.

4608 Posts

Activity in Discussions

GP logs

We are using Prisma access global protect services. with SAML authentication. we have around 2000 users . we are looking a solution if any users unable to connect the global protect gateway so we can to get the email alert. XYZ users are not able to connect global protect gateway ______ reason. can anyone help to get this solution.

New Internet connection - break up HA pair to provision?

We have a pair of PA440s as our main firewall, with a fairly complex but not totally weird configuration - all physical interfaces in use, some with sub-interfaces, NAT to some inbound servers, VPN, URL filtering, etc etc. We have a new Internet connection - same provider, but with upgraded service that precluded just turning up the speed. ...

Palo Alto Networks NGFW Best Practice Assessment (BPA) via the Posture API

Palo Alto Networks NGFW Best Practice Assessment (BPA) via the Posture API Client & Partner Implementation Guide — Windows PowerShell Workflow Purpose This guide provides a practical end-to-end procedure for generating an on-demand Best Practice Assessment (BPA) from a Palo Alto Networks firewall configuration using the Strata Cloud Manager ...

JeanPaul222_1-1786098312985.png
JeanPaul222_2-1786098327651.png
JeanPaul222_3-1786098347950.png
JeanPaul222_5-1786098493750.png

Software NGFW Credit Pool Activation Lag (Ramp Status Showing INACTIVE)

Hello Community, I am looking for some clarification regarding the renewal and activation timeline of our Software NGFW Credits. Our renewal order for 350 credits has been successfully deposited into our Customer Support Portal under Ramp 2. However, looking at our portal dashboard, the status for Ramp 2 (Start Date: 08/07/2026, End Date: 08/0...

スクリーンショット 2026-08-07 095552.png

Panorama Major PAN-OS Upgrade - Full Commit and Push Requirement

Greetings All, Seeking clarification on the full commit and push of Panorama configuration required after upgrading to a major version (ex: 10.2.x to 11.1.x) outlined in step 13 of Upgrade Panorama with an Internet Connection. Is this actually required? This requirement is not outlined in the following LIVECommunity articles / KB articles ...

nohash4u by L3 Networker
  • 63 Views
  • 1 replies
  • 0 Likes

VirusTotal false-positive verdict change request — Run_GTAV.exe

File Hash: 6A9660A1F4B060F03F74F128B07DBC3502790DC549555396CE44B58C23B8F564 Link to Virustotal report for the file: https://www.virustotal.com/gui/file/6A9660A1F4B060F03F74F128B07DBC3502790DC549555396CE44B58C23B8F564 Current VirusTotal Verdict: generic.ml Description: Run_GTAV.exe is a legitimate Authenticode-signed Windows game launcher publish...

info by L0 Member
  • 48 Views
  • 0 replies
  • 0 Likes

Time-Based Access Restriction and Password Expiration for Local Users

Hello Palo Alto Community Team, I need your assistance with configuring local user accounts on a Palo Alto Networks firewall. My requirements are: Configure time-based access restrictions for specific local users. For example, allow a user to log in only during a specified time period (such as Monday–Friday, 8:00 AM to 5:00 PM). Configure passw...

Certain logs not sending to Splunk

Hi All, PA 1410PAN-OS 11.1.13-h9license valid Advanced URL Filtering Advanced WildFire License Just recently i have configure Log forwarding to our Splunk. We follow this document https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGwCAK the splunk is successfully receive Traffic, Threat, System, GlobalProtect, and ...

Resolved! [SOLVED] Prisma Access Panorama-Managed The Serviceability Commands Are Not Working!!

Hello LiveCommunity Team! I created this post to share my experience with an issue regarding the *Serviceability Commands* function in version 6.1.0-h7 of the Panorama Cloud Service plugin. My client reports that this function is not operating as expected; the EDL and routing information sections appear empty, do not allow the selection of speci...

DanielSRomero_0-1785964009584.png
DanielSRomero_2-1785964529454.png

SAML SSO Admins Cannot Install Software Updates - "You don't have superuser access"

Hello Everyone, We are troubleshooting an issue where administrators authenticated through Microsoft Entra ID (Azure AD) SAML SSO are unable to install PAN-OS software updates. Environment: Palo Alto Firewall Microsoft Entra ID SAML SSO Authentication Profile configured with: Admin Role Attribute: adminrole Entra ID SAML Claim: adminrole ...

Resolved! Sending cases of MDR Unit 42 Managed Services cortex XDR to tickiting system

Hello, I hope you all doing well, i want to send case investigated by MDR to our internal tickiting system (regardless of it, the importing that it support API, webhook ...). Can you please share a refference or documentation on how to do it on cortex side, and the configuration i need to deploy on Cortex XDR. Best regards,

Resolved! VM100 SCM support

Hi, looking for some clarification on VM100 SCM support. I have a customer who has onboarded two VM100s (HA pair) and is currently managing their configuration via SCM. No issues there, however when we look at the Dashboard there is no evidence of these devices at all. Other firewalls are showing, but the VM100s are missing. Telemetry appears ...

Best Practices for Disaster Recovery & Incident Response Playbooks in Prisma SASE

Hello Community, We are reviewing our operational resilience and incident response processes for our Prisma SASE environment and would like to understand industry best practices. We're currently looking to develop and mature playbooks covering scenarios such as: Prisma Access / Prisma SASE outages Service Connection failures Authentication pro...