General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4108 Views
  • 0 replies
  • 0 Likes

High Availability issue PA 2020

I have 2 PA 2020's which have been running HA fine for about 2 weeksnow i see in the device that eth1/11 is showing as red/down in both firewallsthe system log shows per attached log (for pri and sec firewalls)anyone have any ideas re this HA issue please?thanks

sue_town by Not applicable
  • 4547 Views
  • 7 replies
  • 0 Likes

application override not working

Hi,We configured Palo Alto in vwire mode between our head office and branches. Setup is like Core <--> PA3050 <--> WAN Switch. There is a specific application that is not working and we create custom application by defining the destination port. We create application override and security policy to allow the specific application but...

data filtering log doesn't show filename for boxnet app

I just ran into this issue last week. We are decrypting boxnet and applied a data filtering profile.For web uploads and (for wildfire submissions?!) it seems to recognize the filename just fine, but for uploads via boxnet app it just shows unused.Is that a limitation of the decoder or am I messing up somewhere?P.S.: I still want my telnet back ...

Safe Search Enforcement

Gentlemen,I set up the Safe Search Enforcement option, as described in the documentation of Palo Alto Networks. But it still fails when it comes to blocking searches for porn on search engines. Does anyone by chance have used this new option that is only available in version 6.0 PAN? Thanks for everything.

Firewall GUI Not access and configuration got deleted automatically.

Hi friends,Not able to access the Palo Alto Firewall GUI from Management Interface and Lan interface also. No Ethernet indication (Light) showing on All Interface. MGT interface showing up but not able to take the GUI access, so taken access through SSH and check the configuration. but no configuration found in palo alto which means configuratio...

Satish by L4 Transporter
  • 3636 Views
  • 5 replies
  • 0 Likes

PA-500 front panel status LED is not on

Hi all,I'm now having issue with PA 500 where the front panel of the unit "Status" LED is not ON. I'd change a 2GB RAM for my client and when I try to boot up. The status light is not on and I can't make any configuration as there will be error "A communication error happened during configuration commit to dataplane, please try again." in GUI mo...

Resolved! site to site vpn issue

Hi Friends,I have PAN-2020 with OS- 6.0.4, one side PAN and other end have juniper tunnel are showing Up but traffic is not passing Not Passing.RegardsSatish

Satish by L4 Transporter
  • 8071 Views
  • 9 replies
  • 0 Likes

Global Protect Windows Firewall

Finding issues with windows firewall with domain policy applied. The Pan client is detected as on the domain and the network adapter is public for the firewall. Under the domain firewall log on the windows machine I show several UDP blocks for the IP address of the gp client.

markk96 by L3 Networker
  • 5879 Views
  • 1 replies
  • 0 Likes

Resolved! Increase paste buffer on PAN (or other import methods)

I am attempting to paste a large number of cli commands from a config converted from another vendor. When I paste via SecureCRT or Putty the commands begin to truncate after around line 20, depending on the length of each line. This is limited to PANOS and not any other devices, so I am assuming it is related to a buffer in PAN. Does anybody kno...

satatic NAT with multiple server

Hi Friend,Need some suggestion, I have one ISP. i dont want to expose my gateway Ip, problem is that i dont want Dynamic IP And Port based NAT, i want source static NAT and i have multiple server. i want source static nat for all server. please help to resolve this issue.RegardsSatish

Satish by L4 Transporter
  • 3588 Views
  • 6 replies
  • 0 Likes

Resolved! Help setting up a custom report using AD group membership as criteria

Hello,I am trying to setup a custom report on Palo. I've tried looking through the canned reports and have tried using the custom report, but I'm not getting the results I want.I want to know how to create a report that can tell me if any member of our student group went to a specific website. In my example, I am trying to find out if any stud...

dannon by L3 Networker
  • 2675 Views
  • 1 replies
  • 0 Likes

PHP vulnerability CVE-2014-3710

Hi, In relation to this vulnerability: CVE-2014-3710. Does anyone know if PA have some signature (Threat) that can stop this?http://php.net/ChangeLog-5.phpany help will be appreciatedRegards,dicu

SOC_CSG by L4 Transporter
  • 3024 Views
  • 2 replies
  • 0 Likes

Global Protect HTTPS weakness - Help!

Hi,I would really like an answer to this considering this is supposed to be a security product in the first place and I see several people have already asked the question.We have just had a security audit completed by a third party, they highlighted 2 issues with the address that our global protect portal and gateway reside on.SSL server accepts...

tezza by L2 Linker
  • 7625 Views
  • 8 replies
  • 0 Likes

LSVPN configuration Question

In order to register with the LSVPN, each satellite must establish an SSL/TLS connection with the portal. Afterestablishing the connection, the portal authenticates the satellite device to ensure that is authorized to join theLSVPN..Just want to understand what exactly packet exchange they do when satellite office authenticates with portal and g...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels