General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2156 Views
  • 0 replies
  • 0 Likes

Resolved! GlobalProtect Certificate Prompt

My users using GlobalProtect on Windows are experiencing a very strange problem when they connect with GlobalProtect.   I am stuck on this one, any tips, pointers, or possible solutions are much appreciated.  

 

Usage:

  • Our GlobalProtect clients conne
...

certerror.png
mmclimans by L3 Networker
  • 4394 Views
  • 1 replies
  • 0 Likes

BGP establish state flapping.

I have couple of bgp established on the firewall. Confiugured new one to AWS ,tunnel comes up but Bgp is flapping.

System logs.

BGP peer session enters established starte,peer ip:169.254.32.1

BGP peer session left established state,peer ip: 169.254.32.1

...

Select route with shorther prefix length

I have a static route for 172.16.0.0/12 but my PA is also learning through OSPF a route for 172.16.0.0/24.

 

As these routes have different prefix length both are installed in the routing table and the dynamic route for 172.16.0.0/24 learnt through OSF

...

COM-UCO by L1 Bithead
  • 3930 Views
  • 3 replies
  • 0 Likes

Configure a static 1-to-1 destination NAT policy

Hello Live Community, 

 

I am a new comer to the firewall game and I am wondering how would I go about setting up static 1-to-1 destination NAT policy on my PA-500 Firewall. I just recently set up the firewall using the documentation below and everythi

...

lzabler by L1 Bithead
  • 5203 Views
  • 3 replies
  • 0 Likes

Resolved! PANs as internal routers?

We are planning to make our Palo Alto (pair) into the main internal router for a decent sized enterprise data center and about 300 users. A pair of Arista routers will be our external WAN/BGP routers.

 

Is using the PAN as a router considered a best pr

...

dlazzaro by L1 Bithead
  • 5687 Views
  • 5 replies
  • 1 Likes

New-old VM models

Hi All,

 

 

I have been updated with new information on "Colossal event" , but some things remain grayed...

 

Example, I have VM-100 almost five years in production environment and I see that it got muscles right now. So I have several doubts regarding my

...

Tician by L3 Networker
  • 4895 Views
  • 5 replies
  • 0 Likes

Resolved! EBL policy (URL & IP)

Hello,

 

We have succesfully implemented the EBL with an Dynamic IP List,

We also want to block destinations URL based , so i've created an Dynamic URL list.

 

Is it possible to combine both objects into one security policy or do I have to create seperate

...

ppater by L1 Bithead
  • 2153 Views
  • 1 replies
  • 0 Likes

Log Retention

I forward all my device logs to Panorama.  I just noticed that the logs only go back 1 day. How can I enable longer retention?  Is there a setting for that?

PANOS Autotag Workflow

I understand we can now add action to dynamic update source / destination IP to our DAG by log forwarding profile.

 

Can i create 2 traffic profile, 1 for forwardining to syslog another 1 to update the DAG?

 

How does it work.

 

Thanks

  • 24247 Posts
  • 119 Subscriptions
Top Liked Authors
Labels