General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 258 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 937 Views
  • 0 replies
  • 0 Likes

Resolved! PA-220 to PA-440 Migration Recommended Process

I need to migrate 2 stand alone PA-220s to PA-440s.  The current PA-220s are running PAN-OS 10.2.4-h2.

I would like to know the recommended process for doing this.

Can I backup the configuration and system state and restore it on the PA-440?

Do I use

...

Import TXT or CSV to an Address Group?

I have a TXT file (I could also save it as a .CSV) of about 2000 known bad IP addresses I want to block traffic to/from. Is there a way to import this list into an Address Group? I see an option to download a dynamic list but I would then have to hos

...

j_della9 by L0 Member
  • 9215 Views
  • 4 replies
  • 1 Likes

NAT mapping public to private IP

Hello all,

 

I have been updating our NAT policies within our PA-3220 to specify traffic translation mapping from our public addresses to private addresses. After committing the changes the traffic has only been routing to the catch all NAT rule at t

...

IKEv2 IPv6 tunnel with dynamic endpoint from one IP

With IPv4 it is possible to build multiple IPSec tunnels from one interface IP with dynamic/unknown destinations and separate them based on the IKE peer IDs. That configuration is accepted by the firewall.

As for IPv6, as soon as one source interface

...

nikoo by L3 Networker
  • 2308 Views
  • 2 replies
  • 0 Likes

Release dates for PAN-OS

Hello all,

 

Can anyone provide me the release dates for the following in regards to PAN-OS:

10.0.4
10.0.5
10.0.6
10.0.7
10.0.8
10.0.9
10.0.10
10.0.11
10.0.12

Thank you

jsmoove by L0 Member
  • 817 Views
  • 2 replies
  • 0 Likes

Reverse proxy for Exchange ActiveSync

We have a Palto Alto cluster and I want to use them as reverse proxy for our Exchange inbound trafic. We activated decryption for this trafic and we want to allow only ActiveSync trafic / application.

 

It did not work with only allow ActiveSync appl

...

karsayor by L0 Member
  • 1449 Views
  • 2 replies
  • 0 Likes

Resolved! Monitor Logs - filtering with wildcard?

Are wildcards supported now when trying to filter logs in Monitor? I saw a post from 2015 asking about it and at the time the answer was "Wildcards are not supported in the traffic log filters."

 

Was hoping that 9 years is enough time to implement t

...

dlcrewse by L1 Bithead
  • 1801 Views
  • 2 replies
  • 0 Likes

Allow traffic mikrotik site to site.

Hi everyone. I just installed a firewall at an office. Office A is connected to office B via two site-to-site mikrotiks.
Inside office A there is a server that records the presence of office B employees.
After introducing the PA440 it stopped working..

...

AlessioS by L0 Member
  • 704 Views
  • 1 replies
  • 0 Likes

Resolved! change default static route

Hi.

 

ethernet 1/1 > DHCP

ethernet 1/2 > Static

 

i want to dst. 172.16.1.x next hop ethernet 1/1 ///// dst. 172.16..2.x next top ethernet 1/2 for change.

not use pbf rule.

qmso475_0-1712801906455.png
qmso475 by L3 Networker
  • 1193 Views
  • 2 replies
  • 0 Likes

Query related to import export config

Hi Team,

We are doing a migration of the firewall from the local VM firewall to another new firewall which managed by Panaroma. We have the below question for the import and export configuration. 

1) Can we export a few configurations together, like

...

Issue Reported in PANOS 10.2.7

the client has been dragging a problem since version 10.2.4 and still sees 10.2.7. Currently the client is on one of the affected versions, PANOS 10.2.7.
This prevents users from being able to disconnect from Globalprotect via passcode or password, th

...

F.Pinar by L3 Networker
  • 2195 Views
  • 5 replies
  • 0 Likes

SNMP (V3) not working on MGMT Interface

PAN-OS: 10.1.6-h6

Issue: SNMP (V3) not working on Management Interface.

Description:

Customer have configured SNMP monitoring from Logic Monitor and Palo Alto but and its working fine for Dataplane interface but if we change it to management interfac

...

Purushotham_0-1713112831485.png
  • 24031 Posts
  • 115 Subscriptions
Top Liked Authors
Labels