General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 444 Views
  • 0 replies
  • 2 Likes

vwire unequal packet/bytes count

Hello!

So, we have a very simple lab topology with virtual-wire and a single "allow all" policy.

I think it is important to note that on the egress interface is a single host that should not be generating any traffic (or minimum traffic). The ingress p

...

Alternatives to Panorama for log collecting?

Hi.

After a recent failure HD on my normally active firewall, it appears I'm going to lose close on 12 months of logs because Palo Alto has no defined process to get the logs off a failed hard drive (where the log partition is still accessible) onto t

...

darren_g by L4 Transporter
  • 4576 Views
  • 5 replies
  • 0 Likes

export config through cli

Hey all,

Is there a way to export the (running) config through cli?

Output should be a config file we can IMPORT back into a new device.

- NOT using SCP (we have restrictions on this)

- NOT using the API (php/rest/browse.php/export::configuration) (we on

...

mr.linus by L4 Transporter
  • 19217 Views
  • 9 replies
  • 0 Likes

PAN as a DNS Forwarder to resolve External DNS Names

I'm looking on how to configure DNS proxy on PAN and found below link that provide great information.

https://live.paloaltonetworks.com/docs/DOC-3637

https://live.paloaltonetworks.com/docs/DOC-3522

https://live.paloaltonetworks.com/docs/DOC-4633

However,

...

Resolved! What happens when the ARP table is full?

Hello Guys,

What happens when the ARP table is full? Does the firewall clear old entries?

Just trying to figure out if what's causing an issue with our wireless is due to the ARP table being full. 

Thanks, Chris

x by L1 Bithead
  • 6003 Views
  • 4 replies
  • 0 Likes

Resolved! telnet

How do you telnet from the PA firewall on port 500 to and external IP address?

infotech by L4 Transporter
  • 2350 Views
  • 2 replies
  • 0 Likes

VMotion on ESXi

Hi PA-Admins,

we installed a VM-100 (version 6.0.2) in our ESXi environment. By accident we forgot to disable vmotion for the VM and the VM moves from one host to others...

I thought vmotion is not supported but our VM-100 is still running and the lice

...

Hithead by L4 Transporter
  • 6093 Views
  • 6 replies
  • 0 Likes

Assistance: my palo is not accessible.

Assistance: my palo is not accessible.
I n is happening more access to my palo, after having placed in demo for a client, only the power LED lights.
I try dy by console access and management, but it did nothing.

---------------------------------------

...

camagate by L1 Bithead
  • 5972 Views
  • 10 replies
  • 0 Likes

Resolved! GlobalProtect authentication problem

Hello,

The group I use to authenticate GP connections doesn't work properly.

I followed the advice on this thread:  https://live.paloaltonetworks.com/thread/8661

It was necessary to place the NETBIOS domain name in the LDAP server profile.  Output from

...

TheBest by L1 Bithead
  • 3226 Views
  • 4 replies
  • 0 Likes

TLS Syslog cert import

Hi all,

Certificates, can anybody help?

I have a cert syslog-ng.cert that ArcSight logger auto-generated and I want to import this on to the firewall as a "Certificate for Secure SYSLOG"


It imports OK as Base64 encoded PEM format, with the option to imp

...

unable to redirect web traffic towards Websense

hi I am planning to deploy Paloalto firewall in my network, but my biggest challenge is how to redirect web traffic towards Websense which I am using as a web content filtering engine.

can any one one help me regarding this to how I can do so.

Regards,

...

om by Not applicable
  • 2599 Views
  • 1 replies
  • 0 Likes

Resolved! App-ID,dependencies and ports

Hello,

I noticed that when adding the Application MS-Lync and its dependencies, ports TCP 5065 & 49152-65535 are needed. In the Applipedia, it states TCP/Dynamic, but in order for this to work, I have to add these ports manually to the rule before thi

...

mbattle by Not applicable
  • 2551 Views
  • 2 replies
  • 0 Likes
  • 23703 Posts
  • 110 Subscriptions
Top Solution Authors
Labels