General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Cannot ping PAN from srx

Hi guys,

I just got my hands on a new PAN. I have setup an srx100 behind the PA-500. The interface Ethernet 2/8 is in the trust zone, is setup as a L3 interface and has an IP of 10.1.1.1. The SRX's IP is 10.1.1.2. The SRX's next-hop address is the PAN

...

Resolved! Filename capturing not working...

Hi everyone,

Is it possible to capture filenames as they are uploaded to dropbox, box.com, justcloud.com, etc...?

We "should" be decrypting the traffic according to our decryption policy. Well it at least shows the flag decrypted in the packet capture

...

Crash28 by L1 Bithead
  • 3167 Views
  • 3 replies
  • 0 Likes

How to configure a pa-500 with 2 inputs

I have a PA-500 running as a web proxy, The connection from the inside is a ASA-5512 (required), except that I have 2 5512's running in active-standby failover mode. How do I connect both 5512's into the PA500 so that if a failover happens the traffi

...

jtribble by Not applicable
  • 5869 Views
  • 10 replies
  • 0 Likes

Zone Configuration

Firstly, apologies if there is already a thread on this.

I have a pair of PA5020's running in HA mode with PAN-OS 6.0.5-h3

When trying to create new interfaces I get the following errors

 

Interface X has no zone configuration.

Interface Y has no zone co

...

JulianH by L1 Bithead
  • 2293 Views
  • 1 replies
  • 0 Likes

Panorama 6.0.4 and PA-200 6.1.0

Seems like the PA-200 will not connect to Panorama after software Update to 6.1.0

Just wanted to check if this is the case. (Panorama needs to be at least 6.1.0 to get the PA with 6.1.0 connected, or if i have an other issue)

thanks,

Kai

MFB123 by L1 Bithead
  • 2569 Views
  • 1 replies
  • 0 Likes

Resolved! Kipmi0 process eating up to 100% cpu

Hi all,

Please I would need your help. After upgrading to Panorama 7.0.1 (current PAN-OS is 7.0.0) I´m having constantly CPU peaks up to 90-100% caused by the process Kipmi0. Did anyone else have the same problem?? What this process is used for?? Is p

...

Carracido by L3 Networker
  • 4935 Views
  • 1 replies
  • 0 Likes

GlobalProtect Prelogon - using non-cached AD account

So i 've been having some issues getting GP prelogon working correctly.  As of right now - GP will make the VPN connection before logon(i am able to ping my device prior to logon) and after i login with a cached account it maintains its VPN connectio

...

sross79 by L1 Bithead
  • 5370 Views
  • 7 replies
  • 0 Likes

VPN flapping

Hi, we have configured a VPN site-to-site between Juniper SSG and PA3020. The tunnel is flapping up/down. The VPN is well-configured and we have configured VPN monitor with Rekey option in the SSG.  How could we know why the tunnel is flapping all th

...

SOC_CSG by L4 Transporter
  • 4181 Views
  • 2 replies
  • 0 Likes

Meru Integration with PANOS 6.1.5

HI Folks,

We're trying integrate our Meru system with Palo Alto Networks. but can't find any documentation.

As far as i can see we have two options:

- Radius

- Syslog feed straight to the PA device.

Has anyone created the regex's / parsers for Meru and Sy

...

PA device responds to unwanted ARP requests

Hi,

I've stumbled upon a tricky situation that I've managed to resolve but still don't know why PA did what it did.

The scenario is as follows:

1) Internet traffic comes into PA from the WAN zone, internal users use the LAN zone.

2) There is a DMZ switch

...

What's mean for counter "flow_fpga_rcv_err" ?

Hi guys,

Sometimes, the firewall has got a increasing drop counter simultaneously as following.

"flow_fpga_rcv_err" - Packets dropped: receive error from offload processor

packet drop : offload processor parse error

I want to know it is expected behavior

...

Resolved! Failed to handle CONFIG_COMMIT

Hi,

did anyone had this error before?

Operation CommitResult OK
DetailsConfiguration committed successfully


Warnings

Error: failed to handle CONFIG_COMMIT

(Module: device)

It appeared out of nowhere. I run 7.0.0

Session behaviour during vrouter changes

Hi everyone,

We've got a number of virtual-routers in our PA-5050s and we're looking to do some consolidation to simplify the configuration.  Basically, we're looking to reduce the number of vrouters by moving interfaces that are currently in differen

...

Mack by L2 Linker
  • 1968 Views
  • 1 replies
  • 0 Likes
  • 23662 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels