General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4441 Views
  • 0 replies
  • 0 Likes

GlobalProtect Client Certificate not Found

Hi All, I am trying to demo pre-logon and am really struggling with the client certificate authentication side of things. I've generated a Root CA on the firewall which has been imported into the Personal and Trusted Root Stores of the machine.The portal is set to use this certificate via a certificate profile which has been configured.Connect m...

Global Protect switching from Pre Logon to User

Hello, We have an issue where many times Global Protect clients are not switching from the Pre Logon user to their logged in user name. Certs are deployed and Pre-logon access works. IT can remote on to troubleshoot a PC that is just at the windows lock screen. We can ensure the PC has access to WSUS for updates, etc... Obviously they have...

ksauer507 by L3 Networker
  • 7682 Views
  • 3 replies
  • 0 Likes

How to Include Line Breaks and Quotes in Descriptions using CLI Commands in PAN-OS

Hello, I'm working with PAN-OS 10.2 and need to set descriptions for various objects like address objects, service objects, and security policies using CLI commands in the set format. I'm struggling to include strings that contain line breaks, single quotes ('), and double quotes ("). Could someone guide me on how to properly format these specia...

Upgrade from 9.1.x, to 10.1.x, 10.2.x, 11.x

Upgrade to from 9.1.X, to 11, 10.2.X, 10.1.X ? Hello, good afternoon, how are you? I have a question regarding which is the recommended version to update from PAN-OS 9.1.X. Personally I consider that version 10.1.X ( 10.1.8-h2 ) is the recommended version, I feel that version 10.2.X is very recent and version 11, well you know, is much, much m...

Metgatz by L4 Transporter
  • 20240 Views
  • 5 replies
  • 0 Likes

How to remediate overly permissive any- any rule

We have an overly permissive rule with Source, destination and ports as Any. We are working to remove this rule but this is widely used. Please suggest what's the best way to identify the traffic using this rule and to create rules with specific source, destination and ports.

How to setup No-IP Dynamic DNS on Palo Alto PAN-OS 9.0.12

Good day all, I spent quite some time figuring out how to setup the No-IP dynamic DNS service on my PA-220 running PAN-OS 9.0.12 and I want to share how I did it as it wasn't a straightforward process for me and I am sure it isn't for others either. Why do you want to do this?This will allow you to use a fully qualified domain name (FQDN) to ref...

Capture1.PNG
No-IP Dyanmic DNS Menu.PNG
Hostname list.PNG
noupdates.PNG
Adam1981 by L1 Bithead
  • 46435 Views
  • 18 replies
  • 18 Likes

Clientless VPN 404 error

Hello everyone, i installed the clientless vpn and up to the login page everything is fine, but when i click on one of the apps i set it gives me the error "404 page not found", I don't have any kind of traffic log that I can analyze, the globalprotect vpn and clientless packages are correctly installed. The security policies are correct, I...

porq91 by L1 Bithead
  • 21389 Views
  • 16 replies
  • 0 Likes

Resolved! Traffic logs not showing since last PA update to 11

Hello, Sorry I'm a web developper not a OS nor PA expert. The University I work for started using PA 1 year ago and everything was fine. Then my boss upgraded PA to 11 + rebooted 2 weeks ago or so and since then, the traffic logs are missing. And -as you can guess- we need them badly at the moment. My boss says it is not a licensing problem ...

Susana by L1 Bithead
  • 4577 Views
  • 5 replies
  • 0 Likes

How do people manage certificates for the MGMT interface at scale?

Wondering how other manage the SSL/TLS Service profile that you attach under Device>Setup>Management>General Settings at any sort of scale. We manage quite a few firewall, via panorama, and the intent would be for each firewall to have a unique certificate for this? Is there a way we can template this would using SCEP in some way? The...

Claw4609 by L5 Sessionator
  • 4395 Views
  • 4 replies
  • 0 Likes

checkpoint R77.30 to palo450 migration

I plan to migrate checkpoint R77.30 firewalls (40 firewalls) to Palo450 devices. checkpoint is configured in a full mesh fashion. Can someone share some ideas on the SD-WAN configuration that is required between all Palo Firewalls, with the Palo backbone designated as SD-WAN. I'm thinking like For a seamless transition, we will set up tunnels ...

  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels