General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 194 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 876 Views
  • 0 replies
  • 0 Likes

Re-Generating HA-Keys

I was lazy and just imported a configuration from a a other firewall to create a new firewall.

Now i discovered that the HA-Keys are identical (because) I imported the config.

Is there any trick to re-generate them or do i have to factory reset and sta

...

gsteiner by L3 Networker
  • 2053 Views
  • 1 replies
  • 0 Likes

Removing an Object and All Dependencies

Morning,

I am doing some firewall cleanup on our panorama.  We have quite a few devices and I am forced to go through each device group to verify if something exsists locally or shared.  Is there any way through the CLI or Panorama to remove an item a

...

one trust two untrust

If I have two DSL connections, and 10 network segments, is possible configure on a PAN firewall one "trust" zone, tow "untrust" zone and send five segments for each one?

Resolved! Has anyone successfully made 'scribd' ReadOnly Access?

Hello,

   We would like to allow "ReadOnly" access to Scribd hosted content.  I note that there is an application definition called 'scribd-uploading'.

   Has anyone successfully done this by blockign the 'scribd-uploading' application?

Thanks

Art

Art by L3 Networker
  • 2840 Views
  • 1 replies
  • 0 Likes

Resolved! Managing Local Admin Through Panorama Template

So, we are (slowly) transitioning our devices to 5.x code to fully utilize the templates via Panorama.  One of the items I was looking into transitioning is the local admin account.  However, from my testing, I don't know that this is possible.  We h

...

mrsold by Not applicable
  • 5523 Views
  • 3 replies
  • 0 Likes

Resolved! Traffic logged in an interface in down state

This is our scenario:

- A PA-200 with a subinterface tagged with VLAN ID 200.

- Connected to a Cisco Catalyst switch (trunk with VLAN ID 200 allowed).

- It has been working without problems.

Now, we want to divert traffic to a Cisco router with same IP a

...

Panorama Generating Blank Reports

Hey everyone.  Has anyone see an issue where Panorama (VM) is generating blank scheduled reports?  I came into the office this morning, and found that Panorama generated its normal scheduled reports, but they are all blank with no data.  Its not just

...

jholmes by L1 Bithead
  • 5949 Views
  • 3 replies
  • 0 Likes

Local user authentication

Hi all,

What does it mean if I create a rule that allows http/https services only for authenticated users from local user database between 2 zones? Will the users have to authenticate to the firewall first? How?

Thanks!

Peter 

AD groups will not show up in PA

I have a new AD group that I made that I want to use in a PA rule. Its been 24 hours and it has not shown up.

Firmware: 4.1.7

We use Radius.

Maybe i should reboot the radius servers ...

thanks

choff123 by L3 Networker
  • 3502 Views
  • 3 replies
  • 1 Likes

Allow Ping to Layer3 Sub-Interfaces by default

Hi,

I have Palo acting as Layer3 gateway and I would like to always allow clients within the VLAN to Ping their default gateway (i.e. Layer3 Sub-Interfaces on Palo firewall) by default (running in Active/Passive mode). In my case multiple Layer3 Sub-I

...

DCN by Not applicable
  • 3289 Views
  • 3 replies
  • 0 Likes

Resolved! PaloAlto firewall platform upgrade?

Hi,

I'm a customer with two PaloAlto firewalls PA-2020 with active / passive config. We have a 100 Mbps simetrical Internet speed bandwith connected

to the PaloAlto firewalls and all is working fine.

Our ISP provider  is going to upgrade our Internet sp

...

Resolved! Top Source Countries (Foreign) Custom Report

While attempting to create a report that only showed the "TOP Source Countries (Foreign)" I found that it also shows connections from the US... Is there a way to exclude the United States from the report?

bgharris by L0 Member
  • 3548 Views
  • 3 replies
  • 0 Likes
  • 24011 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Posts
Top Liked Authors
Labels