General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4111 Views
  • 0 replies
  • 0 Likes

Palo Alto Networks Content Updated email fail

That i just received April 7th lists all the other "Chris's" that subscribe to these updates in the CC field.My teammates received the same with all other PAN users that shared their names.With about 100 carefully selected names we could build almost the entire PAN user directory and emails. OuchWhat gives?c

cramman by L2 Linker
  • 3000 Views
  • 2 replies
  • 0 Likes

Resolved! How to make access for another router thru PA-500

I need to setup router from vendor with official ip adress because it cannot use nat. It will support a service from Miele called "Miele Logic".Without setting this directly on modem wiith swith I want to sett this on interface at PA.I have not figured out what kind of design is best practis to use?

MyhreNDS by Not applicable
  • 4279 Views
  • 5 replies
  • 0 Likes

SSLMGR-cert-ocsp-verify-failed error

Hi Guys,My client has configured LSVPN. The tunnel is up, but he is getting the sslmgr-cert-ocsp-verify-failed error message.It said SSLMGR certificate ocsp verification failed. Certificate xx status is unavailable.Has anyone experienced the same issue before, how can we fix this?We configured the LSVPN ans OCSP respond according to the below do...

MelLi by L2 Linker
  • 6447 Views
  • 3 replies
  • 0 Likes

Anyone successfull with Global Protect Single Sign on and Windows 8.1 client?

Running GP 2.0.3-5 and the single sign on fails on windows 8 or 8.1 clients. Windows 7 works fine so I'm pretty sure I have the portal and gateway setup properly. I've opened a case with support but they're drawing blanks after three days. Here's the log snippet from the win 8 client. (T2024) 07/18/14 09:38:15:394 Debug(3273): ServerThread: Proc...

CGSD by L0 Member
  • 8661 Views
  • 8 replies
  • 0 Likes

Event risk report for email scheduler

Hi Friends,HULK hshah Steven Puluka panos panagent,I want the report related firewall activity like system related eg: admin login, changed made, suspious activity etc. risk report once in day. pls suggest. Thanks in advance.RegardsSatish

Satish by L4 Transporter
  • 2033 Views
  • 1 replies
  • 0 Likes

Ping thru device and static route qestion

Hi,i have one 2050n device in my lab; device is running 4.1.6.Interface 1/1 is configured for as dhcp client and i am able to ping update server and obtain dynamic updates. I have no devices/clients connected to inside LAN. Inside lan is on ethernet 1/2.Interfaces 1/2 and 1/1 are setup for L3, zone is default (trust/untrust) with interface assig...

Dragan by Not applicable
  • 2321 Views
  • 1 replies
  • 0 Likes

bit9 integration

Is it still possible to integrate bit9 with the PA? If so has anyone tried it and is it effective? Other comments pro or con would be appreciated

jdprovine by L4 Transporter
  • 2262 Views
  • 1 replies
  • 0 Likes

Resolved! SSL decryption using incorrect security policy

Hello all,I am testing out SSL decryption on a few categories. For now I am using a system generated certificate and it works in decrypting the categories I have selected. The problem is that once it is decrypted, it doesn't use the proper security policy. We have AD integration and URL filtering set up between certain groups. My user ID has...

ClintL by L2 Linker
  • 5721 Views
  • 4 replies
  • 0 Likes

Resolved! scheduled app-update does not download according to schedule

hi,am facing a weird issue my app+threat update did not update since 489-2600, nothing changed connectivity exist i tried manually to download from the gui it worked perfectly, even yesterday update is been missed for some reason.although the logs show it contaced the updates.paloaltonetworks.com with no issue but still not downloaded.any hint o...

Palo Alto BotNet Reports

Hi!I've got a question about BotNet reports available on Palo Alto firewalls. Maybe someone has an experience on how accurate they are, what logic they are using and how to better tune them to display more precise information?At this point I have all default settings configured. But I have noticed that some of the web sites categorized by Palo A...

IPSEC Phase-1 fails as initiator but not as responder

Hello support community,I'm using a PAN 3020 A/P cluster on the perimeter running 6.0.9. At all of my remote sites I have a cisco ASA that uses IPSEC tunnels to connect back to the main network. The IPSEC tunnel configuration (IKE phase 1, IKE phase 2, and peer IDs) are consistent across my remote sites (best to my knowledge). Out of my 8 IPS...

dan731028 by L3 Networker
  • 8568 Views
  • 2 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels