General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4235 Views
  • 0 replies
  • 0 Likes

Resolved! Same object different details

We've a number of firewalls managed via Panorama.A number of those filewalls will have the same policy, except that the source or destination address will change depending where the firewall is deployed.For example a rule to allow the remote sites (onside of the firewall) access to an intranet within the main site would always have the same dest...

pcook by L1 Bithead
  • 6710 Views
  • 6 replies
  • 0 Likes

DNS service route doesn't work ?

Hi,I am having troubles configuring dns service route for DNS.DNS servers are behind tagged internal interface of PA-2050 device.I was able to configure that for syslog and it sends all the traffic PA outbound to the server.I was trying to do the same with DNS, but when I do, PA stops sending queries either through management interface or throug...

Resolved! Forwarding with ICAP

Is the Palo Alto Panorama able to forwarding using ICAP protocol to an code green. I was unable to find any document in the KB on if it is possible.

Resolved! IPSec tunnel as backup link of MPLS connection

Hi,we have MPLS link between two sites. Right now I want to setup backup link with IPSec tunnel. schema of network connection is as on picture.please help me to configure Palo Alto device to monitor MPLS link and switch to IPSec tunnel when MPLS link will be down.Switch on right site has IPSLA ready that check connection to MPLS router and chang...

Resolved! Email notification for many people

Hi,one simple question: can i send email notifications for more then two people? Because settings are "to" and "Additional Recipient". If answer is yes, how i can do so? Maybe i must add one more email server? Thank you.

Interface by L3 Networker
  • 7952 Views
  • 7 replies
  • 0 Likes

USER ID MAPPING

What will give you better results, User-ID Agents installed on domain controllers, or Server Monitoring from the firewall (agentless)?

almay by L2 Linker
  • 5207 Views
  • 7 replies
  • 0 Likes

Resolved! NAT sessions

Hello All,Is anyone know how to see or debug nat translations on PAN device, similar like "sh ip nat translation" on cisco devices?Txs...

Tician by L3 Networker
  • 33387 Views
  • 4 replies
  • 1 Likes

Certificate trust error after updating Global protect client

Folks.I've finally managed to get approval to push out an update to the latest Global Protect client, but now when we connect, we get a certificate trust error. We are using a self-signed certificate for the portal.I've applied the fix suggested in this Trusted root CA on Global Protect Portal post - but it hasn't helped.Can anyone suggest other...

darren_g by L4 Transporter
  • 3857 Views
  • 4 replies
  • 0 Likes

GlobalProtect traffic not returning through the same interface.

@@Greetings,On our firewall our main internet connection is coming in through a via a virtual wire connection that sits between our physical router and our core switch. In addition to this we have a cable modem attached directly to the firewall via L3, which we use for routing outbound guest wifi traffic and to use for our globalprotect portal /...

Netwerx by L2 Linker
  • 7089 Views
  • 6 replies
  • 0 Likes

Resolved! My first OS maintenance update

Hi, I have an HA active/passive pair of 3050's that are currently on OS 5.0.2. I have successfully downloaded and installed 5.0.9 on the passive unit. Do I need to suspend the active/primary unit before I install the update or will the installation automatically take care of that?I am a bit nervous because I am connected over VPN to the firewal...

mikejeezy by Not applicable
  • 3005 Views
  • 3 replies
  • 0 Likes

GP client connected to internal GW - no user attached to IP address

Hello all,I was thinking that when a client is connected via GP to an internal Gateway, the user is mapped to the IP address of the client. In my case, that is not working. The zone in which the client resides has user-ID enabled, but still the traffic is not stamped with the user-ID.Can someone help me troubleshooting?Regards,Stephan van der Plas

bsanders by L2 Linker
  • 4526 Views
  • 3 replies
  • 1 Likes

SNMP monitor parameters for Palo Alto

Hello,I have two PA500 with software version 5.0 and i would like to know if i can monitorize using SNMP (Nagios) the following parameters of my Palo Alto.- CPU Usage dataplane and management- memory- Current sessions- Hard disk space- State and use of interfacesAlso wanted to know if i could monitorize in Panorama these parameters:- CPU Usage-...

Resolved! schema verification failed (application-filter -> nim 'nim' is already in use)

Hi There,I am kind of stuck on a problem for which I am unable to find a resolution ...When I commit on my device after upgrading "Application and threats database" , I get an alert with the " application-filter -> nim 'nim' is already in use "But when I do a change back (revert to previous state of database 404-2015) it is OK! Any thought...

Oleksandr by L3 Networker
  • 4865 Views
  • 4 replies
  • 0 Likes
  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels