General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4112 Views
  • 0 replies
  • 0 Likes

Error when trying to run User Activity report

I am trying to run a User Activity report. There are logs for this employee with their domain ID identified but when we run the actual report for HR it comes up blank. Is there a know release to resolve this issue.PAN OS version is 5.0.4.Thanks

unable to change the web-gui certificate

hi ,recently i wanted to changed the web-gui certificate i followed the procedure on how to create a certificate in openssl ( for panos 4.x) the certificate created successfully. i event imported into the appliance but whenever i click on the checkbox Certificate for Secure Web GUI i receive the following error system -> web-server-certificat...

Is it possible that set nine snmp trap servers?

Hello,We are migrating configuration from juniper FW to paloalto FW.My customer used nine snmp trap servers on juniper FW.But paloalto FW cann't have over five snmp trap servers.Could you know other resolved ways?Please let me know it.Thanks

Resolved! VPN w/ NAT on external IP in same range as VPN IP

maybe that title was convoluted but i need some feedback for somethiung i have not done before.setting up a VPN but the other party says they DO NOT allow internal addreses over the VPN to their network; so i cant give them proxy IDs of 192.168.0.0 10.0.0.0 etc... it has to be an internet routable IP.So,,I dont have any proxy IDsIm using an exte...

choff123 by L3 Networker
  • 2792 Views
  • 1 replies
  • 0 Likes

PA service account causing huge root DNS traffic?

Basically, the traffic monitor is showing DNS traffic going from my DNS server in the trusted zone to the external root DNS (our ISP) in the untrusted zone, and user is the PA's own domain account.All of it's coming from a domain controller that also has the User-ID agent installed.I probably fudged something in the settings, because it doesn't ...

Maxstr by L3 Networker
  • 6752 Views
  • 7 replies
  • 1 Likes

User Groups Seen as Users in Security Policy and new users added to that group are not getting identified.

Hi All,Model- 2050 and PANOS- 5.0.6In security policies groups are showed as a single user and any new user added to that group are not getting identified by the PaloAlto firewall. In source user column in policy showing single user icon instead group icon. But existing users in group are getting identified ( this issue is only for newly added ...

Gururaj by L4 Transporter
  • 5088 Views
  • 4 replies
  • 0 Likes

How to match MAC to IP in BYOD environments with IPv4 and IPv6

Hi,it is not easy to locate devices making trouble without having a reliable MAC-IP mapping in BYOD environments. With IPv4 we can solve this at the switches side with DHCP-Snooping ans ARP-Protect to assure that only IP addresses assigned by DHCP can be used. With IPv6 I have to find a new solution assure only IP addresses I can map to a device...

Unibw by L2 Linker
  • 3178 Views
  • 2 replies
  • 0 Likes

Why does User-ID suddenly stops ?

Hello,We have a customer who is using PA-3020 in L3 A/P cluster, running PanOS 5.0.2.We have set up User-ID with PanAgent services (Primary and Secondary) installed on two different servers members of the domain.User-ID is configured to be based on :- Security logs- Sessions- ProbingOn 4 different servers :- 2 AD servers- 2 Exchange serversThe U...

ldormond by L3 Networker
  • 3957 Views
  • 2 replies
  • 0 Likes

Resolved! Rate limiting egress on perimeter install

I have a client where I would like to rate limit egress traffic from an internal source IP. This source IP tends to be a major bandwidth hog. I currently have no QOS profiles setup but I do see the option to limit egress I believe.Are QOS profiles the easiest / only way to do this? Does QOS allow you to limit based on a single IP?

SDorsey by L4 Transporter
  • 2386 Views
  • 1 replies
  • 0 Likes

Resolved! Can I create a custom file type?

As per the subject, is this possible to do?We'd like to have specific types of files logged when it enters or leaves our network but since there is no such file type on the system, it isn't being logged.Thanks

eugenep by L3 Networker
  • 5663 Views
  • 6 replies
  • 0 Likes

Cannot set new certificate to portal

Hello all,Because of a domain name change, I created a new CA certificate on the PA500 which is our portal. I set this certificate as server certificate in the Portal settings. I committed, restarted the web-server and sslvpn processes.But the new portal website still has the old certificate. How can I make the new certificate active on the port...

bsanders by L2 Linker
  • 3766 Views
  • 4 replies
  • 0 Likes

Vulnerability Protection - Host Type field

I am looking for clarification as to how the 'Host Type' field works in a vulnerability protection profile.For instance, we have a profile configured to protect our DMZ with six rules as follows:RuleThreat NameCVEHost TypeSeverityActionclient-criticalanyanyclientcriticalblockclient-highanyanyclienthighblockclient-mediumanyanyclientmediumalertser...

MikeBull by L0 Member
  • 4348 Views
  • 1 replies
  • 0 Likes

Resolved! No new traffic logs

I have a problem that my PA 2020 firewall is not generating any new logs. I was on a remote session with an engineer yesterday for something unrelated and in the course of that call the logs stopped generating. It wasn't until today that I went and checked the logs for a problem I was trying to investigate did I notice the logs stopped generatin...

JRussell by L3 Networker
  • 3056 Views
  • 2 replies
  • 0 Likes

Resolved! forwarding with pbf No Nat

Hi,We wanted to forward the traffic coming on public interface (1.1.1.1) with port 80 to an another ip address on another interface (DMZ - 2.2.2.2)just to forward, not want to NAT,we've written a Pbf untrust to 1.1.1.1 with destination port 80 forward eth/DMZ 2.2.2.2That did not work.Also traffic doesn't match to that pbf.What is missing ?

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels