General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2072 Views
  • 0 replies
  • 0 Likes

Resolved! Upgrade cluste A/P and panorama

Hi, we have to upgrade a cluster active/passive and a panorama of this cluster. which are the steps to do these upgrades???

1)upgrade the cluster like usual and then upgrade Panorama???

2) first update the Panorama and then the cluster????

advices...

tha

...

SOC_CSG by L4 Transporter
  • 2897 Views
  • 1 replies
  • 0 Likes

Resolved! PaloAlto firewall is sending system alert

Dear All,

PaloAlto firewall is sending system alert saying "PAN-DB url filtering has expired" . But the i am using only "Bright cloud" url filtering license.

Please suggest.

Regards

Satish

Satish by L4 Transporter
  • 3557 Views
  • 2 replies
  • 0 Likes

Upgrade 5.0 to 6.1

Firewall device has two disk partitions:

Partition 1 => 5.0.X

Partition 2 => 5.0.Y (current active version)

When you install now 6.0.X, it will overwrite 5.0.X

So after reboot Partition 1 will be active. Then you install the next update to 6.1.X, this wi

...

Anon1 by L4 Transporter
  • 1825 Views
  • 1 replies
  • 0 Likes

Configuring Prelogon for GlobalProtect

I'm having a heck of a time getting prelogon working for global protect.  I have spoke with both Palo Alto support, as well as a vendor that is a Palo Alto partner.  Neither were really able to answer my questions.

Here is what I have today.  Two Palo

...

TheHuth by Not applicable
  • 7544 Views
  • 11 replies
  • 0 Likes

Resolved! User-ID for DNS

We have a server that has no body logged into it and all the DNS traffic from that server is showing as a certain user sending the traffic. Is there anyway to exclude this server from User-ID or another way to remove the user from this traffic?

Resolved! GlobalProtect User Information

Hi,

Is there a way to see Global Protect tunnel statistics in either Panorama or the firewall itself?  I'm looking for bytes in, bytes out, packet in, packet out statistics.  The statistics are viewable from the client side if you open up the Global P

...

stevena by L0 Member
  • 3143 Views
  • 1 replies
  • 0 Likes

Resolved! Cleaning up rules

So, I, like a number of people, converted from Cisco to PAN.  We had a consultant in to help with the conversion, and he was assisting with the rule cleanup.  However, a) a lot of rules came straight across as it was time-critical, so they are servic

...

rivkin by L1 Bithead
  • 4496 Views
  • 4 replies
  • 0 Likes

Resolved! Restart daemons/services

Is there a way to manually restart daemons and services in the CLI?

I have a box with sslvpn configured. The sslvpn suddenly stopped working and the portal page doesn't load. I double checked the config and the traffic logs show the traffic as being a

...

SDorsey by L4 Transporter
  • 19103 Views
  • 8 replies
  • 0 Likes

Error: Certificate failed to load: invalid certificate chain

Hi there,

I generated a CSR with PAN-OS 6.1.3 and submitted it to our Microsoft AD CA with subordinate CA template. After uploading the certificate it shows up under the root CA certificate of our domain. But when commiting the changes I get an "Error

...

cale by L1 Bithead
  • 12220 Views
  • 4 replies
  • 0 Likes

How to forward traffic (URL) to a syslog server?

The $misc variable can only be used for Threats?

How to register the URL in syslog server?

CEF Key Name: request

Full Name: requestURL

Data Type: string

Length: 1024

Meaning: URL or filename for threat logs

Palo Alto Networks Value Field: $misc

from PANOS_6

...

UNIVALI by L0 Member
  • 2614 Views
  • 1 replies
  • 0 Likes

preemption loop detected

Hi,

I have two PAN 500 in HA A/P configuration with PAN OS 6.1.3 and virtual wire configured with link detection failure ANY. I tested link failure detection in way to disconnect one side of Vwire and passive device takes over and became active. After

...

Tician by L3 Networker
  • 4908 Views
  • 1 replies
  • 0 Likes

HA A/A or A/P

Hello All,

I have such situation where considering in which mode to put HA PA configuration. As you can see on drawing, customer consider to put PAN in sandwich of VRRP cluster and vLAG virtual switch. VRRP has one virtual IP and MAC, and all destined

...

Tician by L3 Networker
  • 3735 Views
  • 3 replies
  • 0 Likes

Global Protect LDAP Child Domains

Has anyone setup Global Protect with LDAP for Child Domain or have a link to a doc on it?

Global Protect works perfect for users in the parent domain. Want authenticate users in the child domain.

ddavis1 by Not applicable
  • 3217 Views
  • 2 replies
  • 0 Likes
  • 24233 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels