General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4468 Views
  • 0 replies
  • 0 Likes

HA deployment with IPsec tunnel

Hello Guys ,I have two PaloAltos' deployed in HA ( active - passive mode ) and have an IPSec tunnel configured. I have noticed that when the primary PAN ( active ) fail-over to the Secondary PAN, the IPsec tunnel does come up and need to manually start the IPsec ( via CLI ). Do you have a way when Secondary PAN become active the IPsec Tunnel com...

About custom vulnerability signature

Hello,My customer made vulnerability signature in FW. But FW doesn't detect this signature.Customer Vulnerability Signaturecontext : http-req-message-bodypattern : eval\(gzinflate\(str_rot13\(base64_decodeI am searching this but I don't know.So I need your assistance for it.I have read Creating_Custom_Signatures-RevA.pdf document This docume...

Check Point R77 URL policy migration

Hello,I was trying to search for examples or good documentation for migrating check point URL policy to PAN. Does anyone have any suggestions? One of the specific examples I'm having issues with: CP has an option to select Internet as a destination (all traffic leading to external interfaces). ie : SIP: userABC DIP: internet APP: applicat...

dvlacic by Not applicable
  • 3031 Views
  • 3 replies
  • 0 Likes

PAN-OS 5.0.12 vs PAN-OS 6.0.2

Hello All, I wanted to ask the community and the support engineers about the recommendation for PAN-OS for a new installation.Given PAN-OS 6.0.2 came out about a month ago, can anybody comment on the stability of this version? Anybody upgradedto it, but had to revert back? Thanks,- Andrew.

apetrov by L0 Member
  • 4946 Views
  • 7 replies
  • 0 Likes

Resolved! User-id-agent Upgrade to 6.0.3

Hi,We are planing on upgrading from 5.0.8 to 6.0.2, and we are currently user user-id agents on our DCs; do we need to also upgrade the user-id agent to 6.0 or the old one would still work?Thank you

MMCiobanu by L3 Networker
  • 4125 Views
  • 4 replies
  • 0 Likes

About DNS amplification attack issue

Dear Sir,We have a customer for education envirument and they suffered a lot of DNS amplification attacks.Last 7 days session count is 688 Million and 220G Bytes for DNS traffic.We try to drop the "Threat ID 36027 DNS Amplication Attack Query " and "Threat ID 36029 DNS Amplication Attack Response",But we only drop the ID 36027 signature once.We ...

Factory default on PA-3020

Hi, I am trying to factory default a PA-3020 series firewall but the terminal is not responding after getting into the maint section. I sits in the "continue" section there and I cant manuver. What is to be done to go to "factory reset" section in the maint section?

pranoy by Not applicable
  • 2147 Views
  • 1 replies
  • 0 Likes

Resolved! How can I configure newline mark in custom log format?

I'm trying to configure newline in custom log format.For example, if I configure "aaa<newline>bbb", and set it as mail alert.I receive email with "aaabbb".Does anyone know how to configure it? or is it impossible?Two picture shows configuration screen and my mailbox.Regards,

emr_1 by L6 Presenter
  • 8058 Views
  • 5 replies
  • 0 Likes

Microsoft Direct Access and User-id in an IPv4 Environment confusion

Hello,We have a Microsoft 2012 DA installation that enables clients to attach to our internal Infrastructure. The clients all end up with IPv6 addresses, and the DA server uses 6to4 translation for the clients to get to services. Problem I am finding is that when these clients log onto DA, our AD sees them all coming from the same IPv4 address...

jbabcock by Not applicable
  • 3592 Views
  • 2 replies
  • 1 Likes

Resolved! Classification Risk

I have been working on getting our ACC threat risk down to a respectable level...currently ~4.0. I noticed that if I navigate to the Objects>Applications menu, and click on an application, the screen displays a section called "Classification". Under this section I have the ability to customize the Risk value (i.e. 1 - 5). DNS for example has ...

TDS_NOC by L0 Member
  • 2909 Views
  • 1 replies
  • 0 Likes

Resolved! WAN Failover NAT issue

Hello all,I am trying to set up WAN failover on a Palo Alto PA-3020. I used the document at the bottom of this post. When I unplug the interface that is set up in the PBR, it switches over to the secondary ISP like it is supposed to. The problem is the Primary-NAT policy is still active so traffic doesn't pass because the Backup-NAT never tak...

ClintL by L2 Linker
  • 4041 Views
  • 4 replies
  • 0 Likes

Not able to Login to Firewall GUI

Hello Team,I was working on the firewall for report generation and suddenly the GUI stop working , after that i am not able to login to the firewall for 10 min . I saw the below error in the system warning:"websrvr: exiting because service missed too many heartbeats "can any one please explain the error.ThanksAmber

tiwara by L3 Networker
  • 5635 Views
  • 3 replies
  • 0 Likes

Wan interface on PA-3020 to ISP disconnected frequently

Hi All,Wan interface on PA-3020 with static IP connected to ISP router.Since two days, we're facing continue ping drop of WAN interface 3 to 4 times a day, doesn't reestablish the connectivity until reboot the firewall.Then, We had checked with the alternate modem device and monitored whole day, no ping drop and no network down issues we faced.T...

Javith by L3 Networker
  • 2477 Views
  • 1 replies
  • 1 Likes
  • 24379 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels