General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4115 Views
  • 0 replies
  • 0 Likes

Log Retention

I forward all my device logs to Panorama. I just noticed that the logs only go back 1 day. How can I enable longer retention? Is there a setting for that?

PANOS Autotag Workflow

I understand we can now add action to dynamic update source / destination IP to our DAG by log forwarding profile. Can i create 2 traffic profile, 1 for forwardining to syslog another 1 to update the DAG? How does it work. Thanks

On-Site-Spare (OSS) revert License

Dear all,Pls help meI transfered license to Spare device for PAN-OS upgrade, now I can not revert the license back to Primary device, is there any suggestion for me in this case?

Huy by L1 Bithead
  • 4000 Views
  • 4 replies
  • 0 Likes

Is there a Captive Portal type solution for non http/https services?

I am looking for a method to force identify users coming in over the internet trying to connect to an internal resource using MS-RDP. I originally thought I could use Captive Portal for this but CP documentation indicates its only works with HTTP & HTTPS....obviously this makes sense because without an http interpreter, how else could an app...

Ethernet logs on palo alto

My internet link is terminated on ethernet 1/3 of palo alto firewall, how can i can find ethernet logs on firewall to troubleshoot circuit issue and report it to service provider?

Resolved! Looking for PANOS 8.0 spec sheet

Hi, With the new hardware platform (PA220, 800 series and 5200 series) and new PAN OS 8.0 released. I am looking for a comprehensive cheat sheet that has all the limitation on all the PAN firewalls running on 7.1 and 8.0, ie, # of ARP# of ipv6 neighbor table# of vlan supported # of IPv4 routes# of IPv6 routes# of RIP # of OSPF Peers# of BGP ...

DIPP A/A Enviroment Floating IP

Hi Guys, we´ve an Active/active Cluster enviroment. For the normal Internetconnection we will use Source/Hide NAT (DIPP).At the moment we will NAT on both firewalls the traffic through the interface IP. This works fine, the failover isok only one paket lost during failover. The proble is, that in the case of an failover the Users will access the...

mschwab by L1 Bithead
  • 2907 Views
  • 3 replies
  • 0 Likes

topology

Hi, I have the below topology .Planning to put PA in vwire mode in betweent the asa and core in active standby.If r1 fails and asa1 is active and asa2 is standby ,asa2 will become active .. Lets say pa1 is active and pa2 is standby .When asa changes active standby order ,is it possible pa changes the same order as asa do . Or what is the pros ...

PA.png
sib2017 by L4 Transporter
  • 5334 Views
  • 8 replies
  • 0 Likes

Opened session remains after threat triggered block-ip. WTF!

Hi, I've been testing the block-ip action in spyware DNS signatures. I was an RDP session before the threat triggered the block-ip action. Then, no more connections are allowed (what is OK), but the RDP session remains open. Is this a normal behaviour? I think the FW should reset all the sessions previosly established for the blocked IP, shouldn...

ACortes by L2 Linker
  • 2754 Views
  • 1 replies
  • 0 Likes

http proxy -session end reason decoder.

All traffic via firewall works fine except http-proxy. PC makes connectio with http-proxy but the proxy session keeps on dropping. session end reason decoder. Is that normal for http-proxy app.

Resolved! Console conection using CISCO terminal server

Hi First of all i would like to say that im able to conect with serial cable to the Console Port with my laptop. The issue only occurs when i try to conect to the Console port via Cisco Terminal controller (TTY)At the begining i thought was a problem with the values that Palo Alto recomend for this kind of conection (see below) Bits per sec :...

Confused over EBL size limit

We have a 3020 running 7.0.8 and are experimenting with MineMeld. As soon as we get close to 5k IPs on the combined EBLs we get an error on a EBL refresh that it's been truncated as it's over the limit. Palo Alto's own KB suggests that on an entry level PA-200 there is a limit of 50k items on all EBLs combined. https://live.paloaltonetwork...

Resolved! Migrating old FW Config to new device

I have 2 PA-500's and have been planning to purchase a new device. Perect timing with the new PA-800's, fits my needs and then some. Is it possible to migrate my current configurations from the 500 to the 850? Network-ethernet-Radius-Users wtc as well as the policies and rules.

  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels