General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4145 Views
  • 0 replies
  • 0 Likes

Global Protect Client Not connecting to correct gateway

our setup is like we have configured all gateways under same priority issue we are facing is global protect client is getting connecting to wrong gateway.It is not getting connected to gateway near to user location. I read that based on SSL response time global protect client choose which gateway it connects , how can we check logs to determine ...

Monitor License expiration through SNMP

HelloI manage several PaloAlto Firewall, different models and PanOS versions, through SNMP. They actually sent via "pangeneraltrap" an alarm about License Expiration one month before it, but I want to know if is it possible to monitor or check the "Date Issued" and "Date Expires" of every license installed on the Firewall through SNMPBest regard...

SOC_CSG by L4 Transporter
  • 8061 Views
  • 3 replies
  • 0 Likes

About icmp-shell tool and ping-tunnel app-id

Hello,I want to watch ping-tunnel app-id on traffic logs. So I tried icmp-shell tool generated traffics and then went through FW.But These traffics showed icmp app-id.First, What should I do to seeing ping-tunnel app-id? Second, Is it impossible to use icmp-shell tool?Thanks,KC Lee

Resolved! NCAA March Madness 2015

Will Palo Alto update the NCAA2014-Flash, -MML and -Video applications for 2015? Hoping to get these BEFORE the tournament starts.Thanks,Rick

syseng by Not applicable
  • 5248 Views
  • 4 replies
  • 2 Likes

6.1.2 LSVPN/VPN Hang - Reboot Required

I am having some issues as well with 6.1.2 and LSVPN to hub which is on 6.0.5h3. This is vaguely referenced here by others Anyone use 6.1.2? Is it stable where everyone affected, says yeah there's this IPSEC issue and never actually describes what they are seeing. So I'm going to detail what I am seeing. I had two PA-200 devices overnight go...

PA2050 en PanOS 6.1.x

Hey All,Anyone has a PA2050 running 6.1.x and see an improvement in commit times relative to PanOS 6.0.x? Or do the added features just slow down the MGMT plane even more?We have one running in the lab, but since no real traffic is going over it, it is hard to pinpoint the effect of an upgrade.

mr.linus by L4 Transporter
  • 2772 Views
  • 1 replies
  • 0 Likes

Cannot view software update on support portal

Hi Guys,Did you ever experienced the below:When our customer tried to access software update page on their support portal they saw 'no software updates found'Does this mean the account doesn't have access to the software info?Thanks,Cheers,Mel

MelLi by L2 Linker
  • 3226 Views
  • 2 replies
  • 0 Likes

Fortigate Cloud Firewall running on FortiOS Version 5. Is this supported by Palo Alto ?

Hello All,We would like to know whether the Fortigate Cloud Firewall running on FortiOS Version 5 is supported by PA for IPsec VPN as we are getting below error and tunnel is not coming up.2015-03-17 10:53:28 [DEBUG]: vendorid.c:274:check_vendorid(): received unknown Vendor ID à Other End device is a Fortigate Cloud Firewall running on FortiOS V...

tac.in by L3 Networker
  • 3066 Views
  • 3 replies
  • 0 Likes

IP region assignment

PA 500 running PANOS 6.1.2We have regional blocks in place that block inbound traffic originating from non-US IP's. However, we have discovered a bit of a dilemma.We have found that an IP such as 137.135.135.1 originates from Ireland and geomaps as such, but according to whois query is registered to MS in Redmond, WA. So, it is allowed through d...

Resolved! Usage scenario for Change Monitor?

I took a look at the Change Monitor today but really struggled to find a use case for it. Does anyone use this frequently and for what?Thanks!

Dz3015 by L4 Transporter
  • 4838 Views
  • 4 replies
  • 0 Likes

Downgrade PAN-OS-6 back to PAN-OS-5??

Per this discussion:PA-2000/4000 trade-in I am also caught in the same boat. From what I recall PAN-OS-5 worked ok on the PA-2020's. Because of all the issues I am experiencing with OS 6 and the inferior product, I am wondering if anyone had success downgrading their OS 6 back to 5. I know I have just over a year before that OS is EOL, but it ...

cmateam by L3 Networker
  • 7031 Views
  • 6 replies
  • 0 Likes

TRACKING static route

Hello All,I have the below queries.1) How configure 'TRACK' in Static Route (want to monitor the Gateway, As soon as current Gateway is fail immediately traffic will move to another Gateway) 2) How to configure multiple Peer Gateway in a single IPSEC Site to Site VPN( Diagram attached here with) 3)How to add multiple Remote subnet in Proxy IDs...

tac.in by L3 Networker
  • 2192 Views
  • 1 replies
  • 0 Likes

Mail attachment virus scanning

How can I implement proper mail attachment virus scanning ?For incoming mail, I have an antivirus security profile in place that should block virusses (smtp decoder), nothing fancy really:I notice that the PA doesn't filter attached virusses too well. Luckily (as is best practice) I have several layers of antivirus protection for mail:external s...

dieter_b by L4 Transporter
  • 10126 Views
  • 10 replies
  • 0 Likes

Wildfire Action doubt

Hello,We do not have license wildfire in some of our devices.Do you know if wildfire action (Antivirus Profile) would function without this license?Regards,dicu

SOC_CSG by L4 Transporter
  • 3054 Views
  • 2 replies
  • 0 Likes
  • 24340 Posts
  • 124 Subscriptions
Top Liked Authors
Labels