General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4108 Views
  • 0 replies
  • 0 Likes

Administrator account issue

PA-5050 device with software version 4.1.6.In all my devices except one, I was able to create a new Administrator account (Superuser) with password and log on with the account to administer the device. The problem device allows me to create a new account like the others, but I get an "Invalid Username or password" error when I attempt to log on...

kwaid by Not applicable
  • 10370 Views
  • 7 replies
  • 0 Likes

Restrict Individual Administrators by Interface or IP

Is there a way to restrict access for specific administrators by interface or IP address? I really thought I'd seen this somewhere, but now I cannot find it in GUI or docs.Quick explanation of what we want to do. We want to have a sort of backdoor, emergency access to the firewalls directly from the Internet. That is, should some catastrophic ne...

cosx by L2 Linker
  • 9630 Views
  • 8 replies
  • 0 Likes

Show Hard Drive information

For an audit, I need to know the Make/Model/Serial Number of the internal HDD. I cant seem to locate the appropriate show command on a PAN device...any ideas?Thanks much

Sending Before Change and After Change details in Panorama to Syslog

I've been testing the logging of change events to a syslog server from Panorama. Syslog events indicate a change made by a person and the general section of the change without giving any specific details of what was changed. Looking in Panorama in the Monitor tab I can see the change event and some details that are sent to syslog, but the deta...

merrick by L1 Bithead
  • 8870 Views
  • 5 replies
  • 0 Likes

PA equivalent of ASA packet tracer?

One of the more useful features in troubleshooting on the PIX/ASA (which we used until recently) is the packet tracer, which allows us to enter source/destination IP/port, etc and check to see if a given connection is allowed or blocked, and by which rule. Is there an equivalent feature in the PA units?

Resolved! Cannot connect to management server

Dear All:I had meet this problem for three times ,and It comes again , I can ping the Management port with a low delay , but can not login through the httpsand can login from SSH, but without any cli , I can't typing . and always"Oct 30 12:21:13 Error: pan_read_full(comm_utils.c:97): srvr: fatal recv error. sock=3 err=Connection reset by peer (1...

j.guo by L1 Bithead
  • 37913 Views
  • 12 replies
  • 0 Likes

SysLog setup not working

Hi, I am using PA-2050, with PAN OS 4.1.3.From few days I am trying to configure the syslog to be sent to a central logging system. I followed every possible documentation, but I am not getting any syslogs coming to the syslog server. I tried on syslog server on linux and windows. I tried splunk, kiwi and few more. and finally I could conclude ...

Resolved! Maximum number of FW admin sessions

Hi CommunityI was teaching a class and was asked a simple question:Is there a max number of FW administrators that can be concurrently logged into the FW at the same time?I have a large customer (a Managed Service Provider) with a large number of FWs, as well as a international team supporting the customers.It is possible to have many admins log...

scantwell by L4 Transporter
  • 11687 Views
  • 7 replies
  • 0 Likes

Exporting URL Filter objects/groups

Is there a way (CLI or WebUI) to export the URL Filtering objects and their details? We are looking to export the objects and their block/allow categories so we can put them in front of management.

sconley by Not applicable
  • 10047 Views
  • 3 replies
  • 0 Likes

allowing MS product activation and denying web access

I have a network that I want to allow MS product activation to work but web browsing and other internet activity to be denied.I have two main security policies that apply just to this network although DNS and ntp is also allowed:The first one is an application filter that allows all applications you get when you click on "software-updates". And...

kjh by Not applicable
  • 16811 Views
  • 3 replies
  • 0 Likes

Resolved! SHOW SHADOW RULES?

Hello,do you know if it's possible to check shadow rules without do a commit. like a commit check? or show shadow rules?thks,Alex

alle by L3 Networker
  • 14997 Views
  • 6 replies
  • 0 Likes

LogDB Import failing - anyone suggest why?

Folks. I'm about to upgrade my 2020's to 3050's (yay for new budgets!), and I'm trying to preserve the historical log data from my old firewalls by exporting and importing into the new ones. I've managed the export - at least, I'm pretty sure I have - but when I try and import, I get the following error after a period of time. ./dailythsum/1/201...

darren_g by L4 Transporter
  • 3978 Views
  • 2 replies
  • 2 Likes
Labels