General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4135 Views
  • 0 replies
  • 0 Likes

Running SSH commands

We have a used Palo alto PA-3050 and with a support of someone in this community have configured the management IP address and default gateway. We have used the web interface to configure DNS. The device is running PANOS 9.1.15-h1 and we understand there is a 11.2 version. The issue we are having is that we have a C++ agent that uses SSH to conn...

andrewk by L0 Member
  • 1885 Views
  • 3 replies
  • 0 Likes

Panorama restore from HyperV replica

Dear awesome ppl, I was wondering if anyone done any Disaster Recovery for Panorama? I would like to pull the entire HyperV VM from our backup..to restore Panorama virtual appliance..don't really want to get rebuild with the config file as Sdwan ZTP will need to have pre-shared key renewed... Thanks for input. John

Resolved! PAN OS Upgradation

Hello Team, I am planning to upgrade my Palo alto device which model number is PA-4050, current software running on that firewall is 5.0.11. I need to upgrade that in N-1 version could you please suggest the upgradation path so that I can download required images and store in my Jump box. Regards, Akshay

ANilawar by L1 Bithead
  • 3342 Views
  • 4 replies
  • 0 Likes

Resolved! PA820/PA3220 Release date

Hello all, Does anyone know what's the PA820 and PA3220 release date? I've been looking on the internet and I have only found information about the EOL.

Resolved! GP-Prelogon not automatically connecting

Hey everyone, like title suggests I am having trouble with pre-logon automatically logging in. Everything works perfect except this. When you boot up the PC it will never auto connect but if I click connect it will work without issue and never fail. You can then log into the PC and it will move you off the pre-logon gateway over to what I have d...

Resolved! Temporarily disable SSL decryption

Hi I was wondering if anybody knew if the temporary disable SSL decryption is actually broken or it is my firewall, I needed to switch it off as I was having issues getting to sso.paloaltonetworks.com (which oddly is not covered by exclusion list) and found that even after running the command set system setting ssl-decrypt skip-ssl-decrypt yes...

Hide Global Protect redirection

Hello team We have already hidden the global protect pages so that our users can only access through the client, however, we have detected that when we type the ULR or IP in a browser there is an automatic redirect that adds /global-protect/login.esp and we do not want this to be so, because we do not want that from the outside can be seen that ...

Alpalo by L4 Transporter
  • 3489 Views
  • 6 replies
  • 0 Likes

Hide Global Protect redirection

Hello team We have already hidden the global protect pages so that our users can only access through the client, however, we have detected that when we type the ULR or IP in a browser there is an automatic redirect that adds /global-protect/login.esp and we do not want this to be so, because we do not want that from the outside can be seen that ...

Alpalo by L4 Transporter
  • 1286 Views
  • 1 replies
  • 0 Likes

Resolved! Remove Device Certificate

We would like to remove the device certificate from a couple of our firewalls. We don't use or need the device certificates at this time and would prefer them not be installed. I tried to do a factory reset and the certificate automatically downloaded and installed itself.

jwill2 by L2 Linker
  • 7380 Views
  • 6 replies
  • 0 Likes

For assessment retake

i want to retake my palo alto cyber security final assessment because of some internet issue i dint took the assessment properly so kindly help me

MTU size clarification at Interface and Sub-Interface level

Hi All, If we set mtu value as 9192 in interface and 9072 as sub-interface, which one the sub interface choose. If it will choose 9072, would that mean 9072 size packet can be sent. Similarly, If we set mtu value as 9192 in interface and kept the sub interface blank, what mtu will be choosen.

Sujanya by L3 Networker
  • 8253 Views
  • 2 replies
  • 0 Likes

Does anyone have any experiences or "gotchas" they'd like to share when they've implemented Riverbed Steelhead appliances behind PA firewalls?

I see that there's a 'riverbed-rios' app listed in Applipedia, which gives me some hope.Specifically what I am concerned about is discussed here (with configuration examples for PIX/ASAs):http://www.dslreports.com/faq/16494The Riverbed appliances we have take advantage of TCP option 76 for autodiscovering other Steelhead appliances that are in-p...

Traffic logs doesnot have a corresponding URL log

I am trying to perform some forensics into a user activty but Palo Alto logs are not really helping me a lot. I mean, I see a traffic for some IPs but when I click the maginifying glass icon, I see the category in it but not the actual URl. I have checked the URL filtering profile and it is set to alert.has anyone observed this?

  • 24340 Posts
  • 124 Subscriptions
Labels