General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4129 Views
  • 0 replies
  • 0 Likes

Hotspot Shield VPN still works even though traffic logs show deny – Palo Alto Firewall

Dear Team , I’m facing an issue where Hotspot Shield VPN application is not being blocked, even though the Traffic Logs clearly show deny actions, Hotspot Shield VPN still successfully connect, and end users can browse the internet through the VPN. applications like ssl, web-browsing, unknown-tcp, or unknown-udp ipsec .. all are blocked. T...

Resolved! PAN-OS 11.1.13 Predefined reports displaying IPv4 addresses in IPv6 format

We have been experiencing an intermittent problem with our nightly predefined reports displaying IPv4 addresses in IPv6 format.An IPv4 address like 192.168.1.1 is being displayed as an IPv6 address like ::0101:a8c0:ffff:0 We are currently running PAN-OS 11.1.13 but we have seen this same behavior under 11.1.12. Behavior like this apparently ha...

Superreader User Privilege Not Available on WF-500 Appliance

When configuring user privilege on WF-500 appliance, I notice there is no superreader user privilege. But, when I checked from WF-500 appliance configuration documentation, there is superreader user privilege. I cannot find a similar issues where superreader user privilege is not available on WF-500 appliance.Below is the corresponding documenta...

i.rifai by L0 Member
  • 1402 Views
  • 1 replies
  • 0 Likes

Hardware warenties

do I check hardware warrenty status? I have a list of Serial number for Hardware and want to check when the current warrenties expire.

Resolved! Escalation process for Customer's with Premium Partner Support

Folks, As I had mentioned in a prior technical discussion, this is the first time I am working with a 3rd party Partner for support of mission critical equipment. In my specific case Ingram Micro is my direct support contact for my Palo Alto firewall. I have identified a bug and it continues to be of issue for us. It exists on the Preferr...

Resolved! Discord voice chat no longer connecting after PA-440 install

Hi all, I recently added a PA-440 to my home network, everything seems to be working fine with the rules I have set up (Just allowing all from the internal zone to the external zone at the moment) however Discord voice chats fail to connect. I took a look at the traffic logs and saw a lot of packets "aging-out" so I changed the timeout of what I...

Asymmetric Routing - Palo Edge Firewall Active/Passive to Nexus Core

We have (2) equal cost L3 links from our Nexus core switches to an upstream Palo edge firewall HA pair, active/passive. On the firewall, this is an aggregation ethernet with layer 3 subinterfaces defined. There is an SVI on each Nexus switch for routing with a layer 2 port-channel to a breakout switch in between the firewall and core, and we ar...

Do I need an edge router in front of my Palo Alto?

having a general discussion about architecture with a colleague and after thoughts from a wider audience. By deploying my Palo Alto in an Active/Active pair I can connect my firewalls directly to the ISP/MSP and use BGP to control route traffic. My colleagues suggestion was it still needs the CE router where you can apply a simple zone based...

M.Gannon by L1 Bithead
  • 2485 Views
  • 2 replies
  • 0 Likes

Error local-inline-cat unexpected here commit

Hi team Currently, when I try to perform a confirmation from Panorama, I receive this error on the passive node, while the active node performs the confirmation correctly. I didn't do upgrades recently Validation Error: vsys -> vsys1 -> profiles -> url-filtering -> XXXX-> local-inline-cat unexpected here vsys -> vsys1...

Alpalo by L4 Transporter
  • 1786 Views
  • 1 replies
  • 0 Likes

Resolved! TAP ports how many?

I have 4 TAP ports configured and need to add some more. Is there a limitation how many TAPs interfaces can be set up? I haven't found this info in community or the guides. Thank you,Ted

treese by L3 Networker
  • 4831 Views
  • 4 replies
  • 0 Likes

URL Category Change Request for www.intusjuntsparlament.com

Subject: URL Category Change Request for www.intusjuntsparlament.com Dear Palo Alto Networks URL Filtering Team, I am writing to request a category change for the following URL: URL: https://www.intusjuntsparlament.com/chat Current situation: This website is being blocked by Palo Alto firewalls, preventing legitimate users from accessing our ser...

Re: How and Why to Accept Solutions

I am facing this when i try to login with default password- admin and admin. i have vm kvm serious 30 days trail series. need support and help 'cfg.general.need-acknowledgement-to-login': NO_MATCHES

  • 24336 Posts
  • 124 Subscriptions
Labels