General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Superuser (read-only) Not authorized to access

Hi everyone, I am trying to get TACACS working between our PA and Aruba Clearpass authentication server. I have successfully done this for full admin as well as a custom role on the firewall. I am however running into issues with a service account logging in with read only access. When I try to login to the local firewall with this service a...

Typo'd a serial number and unable to remove from account

I have never touched a firewall until today. I added my serial number to our account and put a 6 instead of a 5 for one of the numbers. It took the devices serial number and that device is now in our account. I added the second, correct one to our account. Can I remove this on my own or do I need to contact PaloAlto. I would have opened a TAC c...

Blocking RDWeb brute force attempts

Hi, we have a customer that's under a slow brute force attempt by a persistent party. Blocked their IP several times, but they switched and even started using multiple addresses at the same time now. It's doing around 3 to 4 attempts per second per IP on the remote desktop gateway to brute force the passwords. As they seem to possess several v...

How do I get a website's risk level lowered, since we know it is safe?

Earlier this week, I submitted a website that was blocked because it was categorized as malware incorrectly. This was corrected very quickly. Now that same website is blocked because it is listed as "high risk". We know that it is not. When I tried to use the same method to change the category, the message tells me I need to contact support to...

lloving by L0 Member
  • 2892 Views
  • 4 replies
  • 1 Likes

Resolved! Push Scope isn't showing and Commit button grayed out after upgrade Panorama

Hi, I'd like ask about the problem after upgrade our Panorama to newer version (11.0.4-h2) Before the upgrade, I can directly commit and push to the device without any problem after making some changes in policy. However, after the upgrade, I need to manually select the push scope under "Edit selections" and then we can commit it. Things to ...

KhoaDang by L1 Bithead
  • 3062 Views
  • 3 replies
  • 0 Likes

Resolved! Security policy not working properly

Dear Friends, We have a customer who created one security policy and in that security policy he added only firewall and Panorama IP as source IP address. Issue is that, when we are looking at the traffic logs then in that logs traffic of different source IP is also showing in that security policy which is not allowed in that policy apart from ...

could not unlock user

Hello, I'm sure this has been asked before, but I can't find an answer. Get a message of "could not unlock user" via gui. Is there any way to unlock an individual user via CLI? I'm on PAN 10.2.6 Thanks Rich

rcraxton by L2 Linker
  • 2672 Views
  • 3 replies
  • 0 Likes

Resolved! I am having Pan-OS integarted user Id

For some reason the Agent stopped working on the end user computer. when i checked the event log i came with an error for the id 10036 ( The server-side authentication level policy does not allow the user domain\user SID (X-X-X-XX-XXXXXXXXXX-XXXXXXXXXX-XXXXXXXXX-XXXXX) from address xxx.xxx.xxx.xxx to activate DCOM server. Please raise the activa...

PavanT by L1 Bithead
  • 85393 Views
  • 18 replies
  • 2 Likes

Replacing PA-5220 with a PA-3410 and need the best practice to migrate over configuration

Replacing PA-5220 with a PA-3410 and need the best practice to migrate over the configuration. Obviously the network interfaces are different and will require some cleanup, that and I know to match the PAN OS in the devices to avoid possible complications. Having not done this before what else should I look out for? Thank you!

Scolan by L0 Member
  • 4376 Views
  • 6 replies
  • 0 Likes

Resolved! trouble with GRE tunnel to Netskope

Scenario: Panorama managed VM-700s. 10.2.9-h1. using template stack. Netskope is a cloud web proxy. We setup new tunnel interface, GRE tunnel, static route, network monitor, allow rule, no-NAT rule, and PBF. We use a PBF because Netskope requires it. Clients don't go down the tunnel. I can't ping the probe IP from the clients nor from the f...

Filter manged devices summary by tag in Panorama

Do you know of a way to filter the searches of Manged Devices | Summary in Panorama. You can assign tags to devices, but it is not very useful, if you cannot filter by exact tag tag. You can search by the tag name, but it will only show any other results, e.g. device group or templates, which match the string. We have a few hundred devices and i...

2020-11-23_11-17-50.jpg
batd2 by L4 Transporter
  • 3990 Views
  • 4 replies
  • 0 Likes
  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels