General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1987 Views
  • 0 replies
  • 0 Likes

Natting issue with new subnet.

I am applying destination nat. Natting public ip(untrust zone) to internal ip(trust zone). Public ip subnet is /28.

When access public ip in the monitoring logs it shows me dst zone as Untrust whenit should show dst zone as Trust.

I have policy in plac

...

Cisco AnyConnect over IKEv2 killed by PAN-OS 8.0

Hi.

 

I've been running PAN-OS 8.0 since release, and immediately got problems with Cisco AnyConnect over IKEv2. Even if the session is very much alive, PAN-OS 8.0 kills it of after a random amount of time, usually a couple of hours.

 

If I change the An

...

GI-1 by L1 Bithead
  • 3260 Views
  • 5 replies
  • 0 Likes

Light blue vs dark blue IP's

I have noticed that in the policies that some IP addresses show a dark blue and underline all the time and then there ar IP's that are a lighter blue and the underline only appears when I have my cursor over the IP. anyone else seeing this and is it

...

jdprovine by L4 Transporter
  • 5490 Views
  • 12 replies
  • 0 Likes

Multicast questions

Hi,

 

I am not famliar with Multicast at all, please forgive my ignorance.

 

I need to replace Fortigate firewalls with Palo Alto devices and the Fortigates are currently running Multicast. There are no "groups" defined on the fortigate, and if I run "ge

...

Resolved! SSL Decryption issue (wrong certificate)

Hi All,

 

Having SSL Decryption issue with one of the websites at the moment (https://wiki.freeradius.org/Home)

So testing without decryption and checking certs chain:

 

 

Can see root CA on Palo:

 

 

So all looks good. Implementing SSL Decryption (test versi

...

PA1.PNG
PA2.PNG
CERTS.PNG
BBC.PNG

Resolved! Feed / data control

Use Case: Ofice 365 Access Control

 

What happens if MineMeld deletes all the IPs from a feed, and the firewall sees there are no more IP’s from that feed. Will the traffic be blocked?

What happens on the firewall if there is no data from a feed wher

...

General question to software updates of Palo Alto Firewalls

Hey guys,

 

I have two PA-3020 firewalls with 7.0.7 installed.

 

I want to upgrade to a version of 7.1

 

Since I have never made an update before, I'm a bit worried about it.

 

How do you perform updates?

 

Can I just pick the latest version (currently 7.1.7)

...

MPI-AE by L4 Transporter
  • 3881 Views
  • 8 replies
  • 0 Likes

Resolved! IKE Gateway OK button is greyed out?

I'm trying to add an IKE Gateway on a PA-500 running 7.1.5.

After clicking the ADD button and filling out all the info on General and Advanced Options tab, the OK button is greyed out.

I have a few IKE Gateways set up already and they are working fine.

...

jgruman by L0 Member
  • 4414 Views
  • 3 replies
  • 0 Likes

EXE file type blocked

Hi,

 

I've one client complaining about exe file type get block without any file blocking profile configured.

I made sure we remove the whole security profiles from the security rule configured but still got the same.

I got File Transfer Blocked exceptio

...

PA-3050 CPU dataplane issue

We have a PA-3050 on softwarre 7.0.8 and are struggling with CPU dataplase issues during normal business hours.   80 % load is shown by dashboard in webgui.  Session count is approx. 80 000 when issue occurs.

 

 show system resources follow  - only say

...

TorC by L1 Bithead
  • 6156 Views
  • 6 replies
  • 0 Likes
  • 24215 Posts
  • 117 Subscriptions
Top Liked Authors
Labels