General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4254 Views
  • 0 replies
  • 0 Likes

Issue when loading from AWS Marketplace Palo Alto VM-Series

Hi, When loading the AMI from AWS Marketplace, I get the following error when the machine tries to boot: Enter 'maint' for boot menu.Booting PANOS (sysroot0) after 5 seconds...Booting 'PANOS (sysroot0)' root (hd0,1) Filesystem type is ext2fs, partition type 0x83kernel /boot/vmlinuz ro root=/dev/sda2 init=/sbin/init_single_core console=ttyS 0,960...

Allow a single URL in a URL filtering policy

Good morning All, I have been playing with PA frewalls for a while now but can't seem to find and answer on this. Is it possible to block all URLS in the block list and then have an allow for one or two allowed URLs (for a public use computer) I was hoping a wildcard of * in the block list would achieve this - can anyone confirm if they have don...

LDAP servers for fault tolerance only?

Dear community, I am struggling around with a though I cant find an answer for. I every documentation I found they state that additional LDAP server are for fault tollerance only. Imagine the follwing setup: A customer is loadbalancing user authentication against more than one LDAP servers. So actually that means the firewall will only monitor o...

Rboehme by L2 Linker
  • 2451 Views
  • 1 replies
  • 0 Likes

Resolved! Setup Routes

I need to setup a route to IP Address using a gateway IP. Cannot find anything that is crystal clear on how to set these up.

TDBDIS by L0 Member
  • 2520 Views
  • 2 replies
  • 0 Likes

Session timeout

Hi, From reading this article below: Connection Timeout Even When Heartbeat Packet Senthttps://live.paloaltonetworks.com/t5/Management-Articles/Connection-Timeout-Even-When-Heartbeat-Packet-Sent/ta-p/61435 It says "The session timeout is set to 60 minutes"; what does it mean of this sentence? Which timer represents the session timeout value here...

Apply QoS for uploading

Hi,I have the scenario , user wants upload or stream to outside the campus.Pa in virtual wire mode and after pa there is ASA firewall , How can I makesure the streaming or uploading is not interuptted by other traffic Thanks

sib2017 by L4 Transporter
  • 4927 Views
  • 6 replies
  • 0 Likes

IOCs. How can one create custom type?

Hello, The last couple of days I`m enjoying myself with the minemeld engine and I find it astonishing. I managed to create dynamic feeds from RIPE archives for some geolocation EDLs, will soon post them by the way. However, I would love to be able to define custom IOC types. For example - hash, filename, etc. This way much more information ...

Traffic from PAN IP adresses

We are getting a lot of traffic on our website from certain IP-addresses registered to Palo Alto Networks. The addresses are74.217.90.250,154.59.123.106,154.59.126.106,70.42.131.106 and several addresses on the 64.74.215.0/24 subnet. Why do we get all of this traffic? We can see by the patterns in the traffic that the tha traffic is from bots, b...

Creating an isolated dev environment, is it possible with the PA platform?

We have a dev environment on a different domain that we would like to bring in to our domain. There are plenty of reasons, one being we cannot control the patches, updates or dev access to the machines or control internet access to those machines. Is it possible to create an isolated environment for DEV purposes using PA? The requirements are ve...

Resolved! What is the effect of "SSL tcp-timeout" timer?

Hi, What is the effect of this timer below? application { ssl { tcp-timeout 1800; } I have a netconf over TLS issue in Firewall happened in every 1 hour interval. The same TCP session communication can not be kept after every 1 hour. The TCP packet becomes TCP aged-out seen in Firewall. After changing this timer to 7...

Website not displaying - https://www.labeebyacademy.co.uk

Greetings, I hoping you guys can help me with getting to a website called "https://www.labeebyacademy.co.uk/". When a user tries to go to this website it does not load. When going through my other firewall of the other site it works fine. I have tried several things on the firewall, but this still fails to load. The website resolves to 46.37.179...

Mapping User to Multiple IPs

If a superuser logs into his workstation and then logs into another station/server remotely, the PA only associates the last IP with the user. So his superuser privileges are available via the remote box, but not via his local station. He must log off and back on locally to reset the mapping. Is there a config setting that will map a user acco...

  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels