General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4231 Views
  • 0 replies
  • 0 Likes

Resolved! Custom Vulnerability Protection

Hi,I've made a custum VP and included into my VP group. In security policy I have applied the standard one (NOT my personal VP) to a security policy but when I go in monitor threat I see that matched also the custom VP. Why??

s_quasar by L3 Networker
  • 2471 Views
  • 2 replies
  • 0 Likes

Resolved! IPSEC question

Hi,I have an existing site with Cisco ASA IPsec tunnel to my HQ Site with Palo Alto firewall. Users at the existing site obtained their IPaddress via DHCP Server configured on the ASA.T he inside interface is G0/0 with 10.10.1.10/24 and outside interface is ISP public IPaddress. PAT translation is configured for internet access. For internal use...

donathon by L1 Bithead
  • 6647 Views
  • 13 replies
  • 0 Likes

Resolved! No indicators for output

It was found that output (high, medium and low) have not incidcators event aggregator has over 2xxxx indicators. Please see attachment. How to resolve it? Many thanks!

Resolved! Inter Vsys Routing

Hi, I have to configure Inter vsys Routing where the traffic has to leave the firewall fromone vsys and enter into another Vsys. I am not able to find any documention on this scenario. I have already configured and tested the communication between vsys that will not leave the firewall but stuck on where traffic should leave the firewall. If...

Resolved! New To Palo Alto Firewalls

Hi,I have Frontier FIOS and am currently using an ASA for my Internet router but want to use a PA-200 with a Cisco 891F behind it. The design looks like this: ISP(DHCP)----(e1/1)-PA-200-(e1/2)---891F (5 subnets) I set e1/1 untrust w/DHCP from the ISP and e1/2 trust w/static /30 to 891F. I also checked auto create default route to inject route ...

Multicast RP on Loopback Address

I was wondering if a loopback interface can be used for RP in a multicast environment . does it matter which IP address is used ? how we can set this up properly?

BGP summarization and aggregation issue.

I have VM-100. Running around 50 tunnel to different sites and 4 AWS tunnels.All tunnels running bgp and is all good. When i export 10.48.0.0/12 to aws via bgp,number of routes go above 100 ,aws doesntaccept more than 100 routes and bgp to aws drops.I cant advertise defaull route as AWS need to send traffic to internet not to firewall only which...

Getting "engine fatal" error in Minemeld.

Hi Luigi, this is in reference to ticket 00632153. Two issues here: 1. While attempting to work on issue #2, I noticed that I am getting an "engine fatal" error in Minemeld. Version is 9.34. Have restarted engine, but the issue is still there. 2. I would like to build a custom exclusion for the below Amazon IP list so that addresses are dynam...

Resolved! About LDAP Proxy with User-ID Collector.

Hello.I have a question. When using USER-ID Collector on Agentless Environment, LDAP Proxy can be enabled? or not? I believe that it is not working. If possible, Please let me know how do I configure or install that function.Thanks.Regards,Roh

Highlight Unused Objects Checkbox

I am not sure how to go about requesting this formally, but there should be a button for "Highlight unused objects" similar to the checkbox that is on the policy tab for "HIghlight Unused Rules". This would be a HUGE time saver for admins using the shared objects in Panorama and even using a few unique firewalls. I have really had very little...

charlesk by L1 Bithead
  • 6401 Views
  • 4 replies
  • 0 Likes

No more reports

I have a long time running PA device with quite a few (scehduled) custom reports configured. However since November 2015 I don't have any reports generated; neither custom nor pre-defined. I thought I might have run out od disk space for reports so I've configured Report Expiration Period (days) to 90 days. But nothing changed, I still have onl...

santonic by L6 Presenter
  • 3300 Views
  • 5 replies
  • 0 Likes

Blocking Western Digital MyCloud

When you purchase a Western Digital Mycloud device, it comes with the ability to share this data from anywhere. I dont know exactly how they do this. I am assuming the drive/NAS calls out to a MyCloud website, nails up a connection, and allows remote users to ride this connection back to access the data. So far I havent been able to get details ...

jhickey by L3 Networker
  • 5450 Views
  • 4 replies
  • 0 Likes
  • 24357 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels