General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Best practice of deploying PA vm on AWS

Does anyone know if there is any official guide or doc to follow to deploy PA-VM series on AWS. So far I dont find anything useful. My challenges now as below 1. where the PA-vm should be deployed if our infra is single region and multi-az. 2. Best practice of PA-vm with aws load balancers 3. Best practice of PA-vm with VPCs, do we need single...

Resolved! Virtual memory limit exceeded, restarting - SNMPD

Hi , i am running PAN-OS 10.1.10-h1 with PA-7080 we encounter issue on system alert showing SNMPD Virtual memory limit exceeded, restarting Im not notice any strange behaviour in Palo Alto, i dont know if this error should produce any impact.........what this critical error does? how to solve it? thank you

Layer 2 Interfaces together with Vlan Interfaces or Layer 3 Interfaces

Hello Community I am struggling to choose one of the following two configurations. Which concept would you choose? I have a trunk between the Paloalto (PA-5060) and a switch.In the first variant I would configure the trunk interface on the paloalto as a layer 3 interface (subinterfaces). The IP, vlan tag etc. are directly on the interface. In th...

paloalto-l2-or-l3-interface.jpg
iabueltm by L0 Member
  • 24860 Views
  • 7 replies
  • 0 Likes

Fuel Spark Event Discussion: Identity Management/Zero Trust and Quantum Security (August 22, 2024)

August Spark Summit - Identity Management/Zero Trust and Quantum Security Delve into Fuel User Group, the sister community to LIVEcommunity, tailored for Palo Alto Networks users. Free membership in Fuel brings a myriad of benefits tailored to your interests and needs, particularly if you're immersed in cybersecurity or IT operations within th...

Fuel-Spark_August2024.jpg
Jerry McLaughlin Headshot_YRe2g6Y.jpeg
Philip Kwan Headshot_tTH0jCV.jpeg
emgarcia by Community Team Member
  • 1818 Views
  • 0 replies
  • 3 Likes

Palo Alto OS Update 10.1.0 - 11.0.1

I am running the palo alto firewall in HA mode Active /Passive , and my current version is 10.1.0 , and want to upgrade till 11.0.1 , Please provide the step-by-step action. I never Updated the palo os before.

Join Us in Welcoming LIVEcommunity's 2024-25 Cyber Elite Experts!

LIVEcommunity is pleased to announce the 2024-25 Cyber Elite Program! LIVEcommunity's Cyber Elite Program recognizes community experts who demonstrate excellence in participation and contributions to other members and Palo Alto Networks customers around the world. Our 2024-25 cohort includes ten of LIVEcommunity's most engaged and enthusiasti...

jforsythe_0-1724338810391.png
jforsythe by Community Team Member
  • 995 Views
  • 0 replies
  • 2 Likes

Resolved! ARP Proxy didn't work after PanOS upgrade from 10.1.6 to 11.1.2-h3

Short description: We upgraded to 11.1.2-h3 on an HA pair of PA-820s last night, and the NAT/ARP Proxy that was functioning on PanOS 10.1.6 is no longer functioning. We would really prefer a simple solution on 11.1.2-h3 rather than going through a 5 hour downgrade that we would still need to upgrade by the November 18th drop dead date of Advi...

Resolved! Palo Alto Firewall

I am planning to setup the LAB environment where I want to run Palo Alto firewall. I am looking for latest version image. How can I get the image? Also need help on steps to achieve it. Thanks!

DHCP Relay

I have a strange intermittent problem with DHCP relay. I have it setup on all our firewalls, PA-220, and they relay to servers in the data center (Windows 2016). At some point the relay stops sending offers. I can see the discovery packet and no offer after. The firewalls connect to a Cisco 2960 switch, nothing crazy on the config. It works...

bschaper by L2 Linker
  • 7247 Views
  • 7 replies
  • 0 Likes

connection issue about security-client

as doc descibe , Cloud connection should be connected [email protected]> show ctd-agent status security-client Security Client Dlp(0)Current cloud server: dlp.hawkeye.services-edge.paloaltonetworks.com:443Cloud connection: disconnectedConfig:Number of gRPC connections: 1, Number of workers: 5Debug level: 2, Insecure connection: fa...

Resolved! Convert management-only Panorama to panorama-mode

So I've added a 2048 GB disk: admin@panorama> show system disk details Name : vdbState : PresentSize : 2097152 MB Status : AvailableReason : Admin enabled When trying to switch system mode, this happens: admin@panorama> request system system-mode panorama Server error : Failed to change system mode from management-only to panorama.Plea...

New local users created not working on FW Active but yes working on FW Passive

Hello team Currently, I have a pair of FW 1410 Version: 11.0.4-h2, passive active and I have encountered the following problem When creating new local users, with permissions, superuser I can not access via SSH to them locally but I can do it via GUI and all other users created previously.i.e. Users created some time ago in the FW are working co...

Alpalo_0-1718722651633.png
Alpalo_1-1718722724774.png
Alpalo by L4 Transporter
  • 4000 Views
  • 7 replies
  • 0 Likes

For AD user password reset option

We have seen that whenever a domain password is going to expire for the SSL VPN user, the Global Protect client on the user's system starts flashing a message that the password will expire soon. We want to know if there is any possibility to embed a password reset link as well along with such a message.Please help us on the same so that we conv...

SurajN by L2 Linker
  • 4825 Views
  • 4 replies
  • 0 Likes

Log forwarding - Filtering and Auto- tag not working

Hi there, I had setup Log forwarding profile, where I am sending All logs to syslog server. Thats working great. Then I added one more line where I am filtering threat logs for (severity eq critical) and (zone.src eq internet_zone) Checking filter results by Filter Builder and its showing exact values which I am looking for Then I add...

LogForwarding.png
MatchingList.png
filter.png
Action.png
  • 24412 Posts
  • 125 Subscriptions
Top Solution Authors
Labels