General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

nailing up an ipsec vpn?

I have a site to site ipsec vpn between two Palo firewalls.  A always initiates the tunnel to B. Is there a way i can make A always keep the tunnel up even when interesting traffic is not present?

IPSec Child-SA rekey negotiation fails

Our customer encounter intermittent connectivity issue with IPSec IKEv1 during phase 2 rekey of IPSec Child-SA. We open case with the IPSec peer device vendor, they mention that PAN is not sending message to R2011 (IPSec peer) for deleting the SA whe

...

Configure L2 service on Active-Active Mode

I'am using PAN-PA-3220

We want to setup this model with:

1. HA (active-active)

2. Interface configuration using Layer 2 configuration

 

Is it possible to done it?. as when I try to create Layer 2 configuration. It always pop out error "Layer 2 unable

...

Hazzuan by L0 Member
  • 781 Views
  • 1 replies
  • 0 Likes

SSO not working properly

I have just setup SSO in our new eng panorama. When I tested it initially it gave me the error message "Error Displaying SAML error response page". I reached out to our team and it was noticed that the new saml app had fewer claims and attributes tha

...

Bumenang by L1 Bithead
  • 2995 Views
  • 1 replies
  • 1 Likes

Resolved! Moving some connections to the New PA

 

We have this setup for one site 

 

------Dis sw--------------Edge switch stack of 3 ----------40 users 

 

we need to move few users behind the PA  .

 

what can be best design for this as we only need to have 5 to 10 users behind the PA  850.?

 

Should we co

...

MP18 by Cyber Elite
  • 5075 Views
  • 15 replies
  • 0 Likes

Certificate delete

Hi

 

i have a problem certificate delete. But sow error Failed to delete Certificate - CaptivePortal.  °  CaptivePortal cannot be deleted because of references from:

 

i look to to ssl/tls service profile list not show profiles. plase help mee 

btadmin by L1 Bithead
  • 1118 Views
  • 6 replies
  • 0 Likes

Clarification on App Rule - I thought I understood this

I recently moved a firewall into being managed by Panorama.  I setup an Application rule specifying the application as PANORAMA which includes the ports necessary (I assumed) for Panorama communications but the firewall could not be added successfull

...

Resolved! Prisma Cloud Workload Protection

Hello,

I'm playing with the API to get hosts' vulnerabilities and images' vulnerabilities in Prisma Cloud (CWPP) (documentation: https://pan.dev/prisma-cloud/api/cwpp/get-images/)

Following the documentation (which is great by the way) I noticed ther

...

Suspicious URL detection by cortex

Hi All,

 

Will cortex be able to detect if there is any malicious URL clicked by user?

Also, would like to know how cortex detect the ransomware attack.

 

Regards,

Sakshi Seth

 

Proxy SG to Palo alto policy migration

Hi,

 

Is there any automation tool through which we can migrate all our proxy SG policy rule, object and object group to Palo alto. Or else if there is any alternate option then please let me know.

  • 24131 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels