General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 222 Views
  • 0 replies
  • 0 Likes

Resolved! Network requirements for HA clustering

Hello,

is there any document that describes network requirements for clustering two firewalls. Especially how far apart two firewall can be (latency, delay etc.)
Is there any design scenario where two firewalls on two different sites can be clustered

...

Resolved! HTTP Headers in Threat Log?

Hi,

 

is there any possibility to see the HTTP Headers in Threat Log? For example i want to protect a shared hosting environment and on the threat log ( vulnerability profile, WordPress Login BruteForce Attempt) i can only see "wp-login.php" as the "

...

TP-Log.png
iweltag by L2 Linker
  • 3004 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect with 2 NICs

Here is an interesting question:

 

If a system has two fully configured NICs with internet connectivity, which interface does GlobalProtect use establish its connection to a Palo Alto gateway?  How can we select which NIC it uses?  Is it something th

...

mmclimans by L3 Networker
  • 3472 Views
  • 2 replies
  • 0 Likes

PA 5050 to N5K 10G Conn

Hi Guys,

 

I am facing an issue, links are not coming up b/w the PA and the N5K and both are 10G Ports. In PA, we should keep the link speed as auto and in N5K, there is no option to set the 10G port link status to Auto,

 

Have anybody faced this iss

...

jithuraj by L1 Bithead
  • 1935 Views
  • 2 replies
  • 0 Likes

Resolved! GlobalProtect on DHCP Interface

Hi,


I have configured GlobalProtect on DHCP interface, but for some reason I can't make it work. I don't see GP web page and I cannot connect to it using GP client.
I tried same config, but with static address and it works perfectly.


Can somebody help

...

nabokih by L1 Bithead
  • 5780 Views
  • 4 replies
  • 0 Likes

LLDP not showing neighbors

We have LLDP enabled on AE1 (x2 40G) which is on a QNPC on a HA A/P 7050 cluster running 7.0.2

The N7K is seeing the LLDP information and traffic, however the 7050's are not. Trying to see if anyone else has had success with LLDP on this?

 

Interface  

...

How Can I confirm SSD Primary Drive(PA-5000 Series)

Hello~

 

I am curious about Primary Drive that there is setting drive in Maintenance Mode

 

I set primary as id 2

and rebooting

 

I tried to figure where primary drive out at booting console log and monitoring.

I couldn't find about that

 

Could you guys let m

...

John_Lee by L2 Linker
  • 1830 Views
  • 2 replies
  • 0 Likes

FIPS

show fips-mode does not work on PA-500, V6.1.  I get "Invalid syntax" error message.  Any advice/insight is greatly appreciated.

Resolved! Failed to insert certificate into configuration

Hi,

 

When I try to generate self-signed certificate Device -> Certificate management -> Certificate -> Gererate.

I got error "Failed to insert certificate into configuration. Only self signed CA certificates can have identical subject and issuer fie

...

nabokih by L1 Bithead
  • 14413 Views
  • 1 replies
  • 1 Likes

Cutwail/PushDo SMTP Attack Vulnerability Detection

I've recently set up a new PA-100-VM and been closely analysing it along with all of the traffic that goes through it.  It is running 7.0.3 along with the latest updates to all definition files (updated nightly).

 

In the process of doing this I've d

...

Resolved! Global protect with DHCP client on WAN interface

I have a PA-200 which is configured with DHCP-client on the WAN interface.

When configuring Global Protect, I'm not able to configure the gateway address. When I choose the WAN interface as the gateway address interface, I'm not able to choose the IP-

...

torm by L4 Transporter
  • 8736 Views
  • 10 replies
  • 0 Likes

high dataplane cpu utilization

Hi,

 

I have PA-2020 which has high dataplane cpu utilization. It is stuck at 100% during business hours. It drops to 25% after work. I suspect too much traffic but is there an easy way to check what sessions/applications are the most cpu intensive?

...

UMWL by L0 Member
  • 3175 Views
  • 2 replies
  • 1 Likes
  • 23614 Posts
  • 107 Subscriptions
Labels