General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4126 Views
  • 0 replies
  • 0 Likes

Panorama MGMT interface option - Public IP ?

Hi Question about configuring Panorama management interface. Why is there a "Public IP" under the management interface? "IF" we would set a public IP on the panorama, dont we configure it under IP Adress + Netmask + gateway? Why is there a "Public IP" option field first? I searched and read the guides but nothing about a public ip is spoke...

AnderSL by L1 Bithead
  • 2130 Views
  • 2 replies
  • 0 Likes

Resolved! Find the source for "DNS amplification attack response"

Hello, We receive many "DNS amplification attack response" alerts with the source of our internal DNS servers toward public DNS servers on the Internet. How can we know whether these alerts are not false positives and if they are true positive, how to find the main endpoint responsible for this type of attack? Thank you all 🙂

Help support

Dear Palo alto family, I face some difficulty to ping internet on DMZ , i am trying to configure a security policy DMZ_to_Public/ WAN but still i didn't ping 8.8.8.8 in DMZ switch and didn't ping in firewalls itself also. Help me to solve this issue pls

Zola12 by L1 Bithead
  • 1683 Views
  • 3 replies
  • 0 Likes

Resolved! eventid eq tunnel-status-up/down

Hi Team, We run the command eventid eq tunnel-status-up / down but we dont see any output under Monitor>system. What is the reason? two days back we see the went down and see the DPD log as well but still no result for subjected command please suggest.

shirishkulkarni_0-1714376236358.png
shirishkulkarni_1-1714376355230.png

How to make white list policy on file blocking palo alto

I have Palo Alto PA - 5520 Series when the user uploads a file, I want palo alto just allow file in jpeg, png, xls, xlsx, pdf type. and blocking other file types. because my server has an incident, it receive file type phar and php (malicious file) but palo alto didn't block this file because Palo Alto alto didn't have phar file type. so I wa...

Deactivate BFD option

Hello, I need to disable the BFD option, can anyone tell me the best steps to follow? I also need to know the implications that may occur when I disable the BFD option. thanks

Alpalo by L4 Transporter
  • 3770 Views
  • 5 replies
  • 0 Likes

Group Based network policy not being blocked.

Hello, I have an openldap server setup as well as an LDAP policy and group mapping on the Palo Alto firewall. When I run the 'show user group name "cn=employees,ou=groups,dc=brillnet,dc=com". I can see the users in the group just fine. Refer to the output below. I am using the UserID xml api to associate group/user to ip mappings. Calls...

edlyle_0-1714159919760.png
edlyle_3-1714159961648.png
edlyle_4-1714159989788.png
edlyle by L0 Member
  • 1974 Views
  • 2 replies
  • 0 Likes

Resolved! User Type requirement for PCNSE exam

Hello,I was wondering if anyone can help regarding the User Type required before scheduling PCNSE exam with Pearson VUE. The options are 1) Customer, 2) Partner, 3) Academy and 4 Palo Employee and I really have no idea what I am supposed to pick. My Palo account is linked to my gmail email address, as I have no intention "locking" my certificate...

Unable to add virtual disk to Panorama

Hello, We are running Panorama VM release 8.1.8 un Panorama mode.We have a 2 TB disk for logging and we would like to add a second 2 TB disk.The new virtual disk has been added to the VM, and after reboot is seen as sdb in Panorama (sdc is already working) : > show system disk detailsName : sdbState : PresentSize : 1887436 MBStatus : Mig...

Setting up portchannel from router to a pair of PA

Hi Guys, I have a pair of PA5220s and a Cisco router ASR1001. I want to set up a port channel on the router and then spread the interfaces between 2 PAs. Each interface on the PA is set for virtual wire. I have done port channels between Cisco routers and Nexus switches (vPC) many times, but I am not sure if the PA firewalls support this setup...

tinhnho by L3 Networker
  • 2286 Views
  • 3 replies
  • 0 Likes

Unable to ping website, getting this site can't be reached

Hello, I'm a novice so I could use any help, RTFM, just point me in the right direction. I currently having an issue getting to a vendor site, can't ping the website or view the page. But from outside of our organization, it page comes up just fine and pings. when I perform a dns lookup, I can see dns entries and when I ping it, I'm getting an...

  • 24336 Posts
  • 124 Subscriptions
Top Liked Authors
Labels