General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.


Resolved! DNS in global protect vpn

Hello Experts


In global protect configuration, I provided the DNS IP. After VPN connect, I have two DNS, Physical card DNS and global protect vpn provided DNS. My question is that what DNS would be used for DNS queries for internet and for traffic th


Resolved! Best Security Firewall review

Ok, I heard that palo alto does have a service that will review a firewall configs to make sure the Best Practices and Security Practices are being down. If this is true what is the service call and has anyone use this service ?



Resolved! IP for portal and gateway in global protect

Hello Experts


Can I use different IP for portal and gateway other than IP assigned to external interface of firewall? Should I need to assign this IP also to external interface of firewall or no need?





Panorama Audit Logs

Hello Experts


I am using Panorama to push configs to firewalls. But the problem is that there are alot of users, doing configuration but in audit logs of Panorama, it is showing config by <user> thats it. I would like to see what actual changes/comma


Wildfire .docx



i am testing wildfire at the moment for forwarding .doc, .docx and EXE Files to the wildfire cloud.


This is my rule:



But it seems, that only .doc and .exe Files are forwared to the cloud (first Forward but then upload skip because the cl


WF Rule
DF Log
iweltag by L2 Linker
  • 10 replies

Resolved! Traffic processing when user information may be outdated


Could you please expalin what's the default traffic policy when new authentication agent/AD DC info is unavailable for some reason.

Does the user-based rules get automatically turned off or someting?

Does the traffic which gets under user-based f


MilosS by L0 Member
  • 3 replies

Resolved! policy muliple search syntax

I have a large list of IP addresses that I need to search on.  I am not necessarily interested in if these systems are getting traffic, but moreso interested if they are present in any policies.


Is there a way to search for multiple host/net objects


helfman by L0 Member
  • 2 replies

Qos policy and order of precedence


If  a qos profile  class 3  set  limit 10 and no quarantee set . And a qos policy created and it kept on top of the policy list .

Lets say there are other classes  also  set  like below 


qos policy 

1 )   class 3 

2 )  class 2


sib2017 by L4 Transporter
  • 1 replies

Resolved! Copying firewall rules from one firewall to toher

Hello Experts


We have communication between DC and there are four three firewalls in between. So for bidirectional policy, I need to create same two rules on fw1, two rules on fw2 and two rules on fw3 (the only difference is offouce zone names and po


Resolved! IP address for NAT

Hello Experts


I was checking confiugration on my PA firewall and I foud for every source and destination NAT, the public IP for NAT with /32 was assigned to external interface of firewall. In my opinion there is no need to assign public IP /32 to ext


  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors