General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 241 Views
  • 0 replies
  • 0 Likes

Setting Up Double NAT over a site-to-site VPN

Hi,

 

I've been trying to read up on if it is possible to set up what Cisco would call "Twice NAT" on Palo Alto, and while there seems to be a lot out there for really odd fringe cases, I'm struggling to find anything on what I think would be a reall

...

BGP failover not working as expected

Hi

 

Our PA 220 is running 2 eBGP's  with 2 CE (WAN) routers.

Those 2 CE routers will run eBGP with respective ISP's. 

 

We control the routing through Local preference. 

 

Routes learned via primary CE 1 has LP of 500

Routes learned via secondary CE

...

Paloalto can't block hotspot shield.

 

Dear all,

 

I am currently facing paloalto can't block and see hotspot shield app.

Our organization do not want to use ssl decryption to block hotspot shield.

 

Any other solutions to block hotsport shield without decryption ???

 

 

Thanks.

 

 

zm.tun by L1 Bithead
  • 7964 Views
  • 8 replies
  • 0 Likes

Panorama Upgrade

Hi Team,

I am setting up a new Panorama. Where not even created the Device Groups and Templates yet. I need to upgrade the Panorama but i am not able to do that. I am able to reach internet but unable to fetch the softwares, is there anything that ne

...

Resolved! LACP MAC Movement and Doubts

Dear Folks, 

 

First time I'm deploying PAs with LACP active/passive for HA solutions. I have some doubts couldn't get enough information from Internet source. 

 

1.  In the event, if one firewall goes down, PC on SW1 goes down, how this mac and arp

...

Ramakrishnan_3-1702285551757.png

auto commit issues after upgrade to 10.x

Hi,

 

We started to experience auto commit finishing delay on our PA-5220 after the upgrade to 10.x.  We have a pair of HA PA-5220 in active/passive mode, we never had an auto commit issue before in previous updates, reboots of the firewalls. We have

...

RREALICA by L2 Linker
  • 14624 Views
  • 14 replies
  • 7 Likes

Upgrade of 5260

Dear Team,

I have upgraded PA-5260 from 10.0.12 to 10.1.9-h3 and faced weird, issues after the upgrade the customers monitoring system has generated some errors like this >> "device 'slot-1 data processor' status is 'down' "" we have checked and slot1

...

Manual Gateway Selection in GP

Hi Team,

We are unable to select the Gateway manually in GP may i know how to set this up? Users needs to get the option to select the Gateway manually. This is quite urgent please help.

Regards,

Sanjay S

RFC1006 protocol over TCP

Hi has anyone heard of this protocol, give simple example of how it works AND whether or not it's supported by Palo Alto ? 

daz12 by L1 Bithead
  • 459 Views
  • 1 replies
  • 0 Likes

URL Category rule works on some firewalls but not others

We are using a rule to permit traffic for Cisco licensing using URL Categories.  The rule is applied via template, so all of the firewalls get the same rule.  The only variable is the source IP/host.

 

This rule works on most of the firewalls (all ar

...

jwill2 by L1 Bithead
  • 823 Views
  • 3 replies
  • 0 Likes

PA-220s randomly crashing

We are having a large number of our PA-220s randomly crashing. No critical system logs are see shortly before the crash, the device just goes down and they are logs of dataplane starting up like 30 minutes later. Our other models are fine, its only t

...

Claw4609 by Cyber Elite
  • 3155 Views
  • 9 replies
  • 0 Likes
  • 23624 Posts
  • 107 Subscriptions
Labels