General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Routing logs

Hello... I have a question regarding default static route logs. We 2 ISP links configured with path monitoring at default settings (Failure Condition=Any, Preemp HT=2min, PI=3 & PC=5) As seen in the attached logs, there are alternate path-monitor-failed and recovered but in the attached screenshot, both links failed and then recovered. Altho...

Need to Export last 90 days logs

Hi Friends, We have a customer who wants to Export Last 90 days traffic logs from the firewall for Audit Purpose. We have tried to generate them via Custom Managed Reports but no luck and more over we came to know that there is some logs exporting issues in 10.2.4 PAN OS version so we have suggested them to upgrade to the latest 10.2.8-h3 Co...

Satyak by L3 Networker
  • 3184 Views
  • 5 replies
  • 0 Likes

Pan-OS end of life list

I am looking to upgrade the software on our firewall to version 10.2.9-h1. I know it has and end of life scheduled for August of 2025. Is that the same end of life from version 10.2.0 through 10.2.9-h1 or does each iteration have its own end of life? There are about 30 software versions between 10.2.0 and 10.2.9-h1. Thank you in advance.

SAklil_0-1715727270115.png
S.Aklil by L1 Bithead
  • 2672 Views
  • 2 replies
  • 0 Likes

Resolved! Admin password not changing

Trying to setup a few PA-410 firewalls . I have one that is not taking the password change, regardless of whether I try from the Web UI or console. In both they say password changed, but only the default password works. Anything else I can do?

Jonesy by L1 Bithead
  • 3323 Views
  • 4 replies
  • 0 Likes

Passive DNS Feature

hi, Please give me suggestion how to apply " Passive DNS Feature " in PAN-OS 10.0.X version because got link in that it is not suggested to apply this feature on PAN os 10.0.x. please find below link and do needful.https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGHCA0D "

SurajN by L2 Linker
  • 5453 Views
  • 5 replies
  • 0 Likes

Error comparing with candidate config

Hi, We have an issue in our PA cluster. When we try to compare the candidate config in DEVICE->AUDIT CONFIG we get this error:"failed to get content for 'base--candidate'" Version is 10.2.9-h1

BigPalo by L4 Transporter
  • 2610 Views
  • 1 replies
  • 0 Likes

Resolved! userid and password not working

Hello, I have a PA-3020 appliance and at the startup changed my password and then did a factory reset. at the following prompt . PA-HDF login I put in username and password and keep getting that login is incorrect. Is there another way to physically reset the appliance so that I can login? Thanks

moman63 by L0 Member
  • 2520 Views
  • 2 replies
  • 0 Likes

PA-850

Hello all, Could you please give me correct US and EU ECCN for PA-850? Thank you in advance. Best regards,

smacura by L1 Bithead
  • 3129 Views
  • 2 replies
  • 0 Likes

Resolved! Remote Command Execution Vulnerability

Hi, We have detected so may critical vulnerability in our firewall . i have attached the screenshots. 1.is there a way to avoid these kind of traffic? 2.where can i find more about how to block these kind of traffic?

Server-Monitoring shows Authentication-failed or Connection refused error

We are using WinRM-HTTPS protocol in the Agentless User-ID configuration, when connecting to the Domain Controller(s) firewall is using the default port as 88. Palo-Alto firewall version is 10.2.3-h4 .Server-Monitoring shows Authentication-failed or Connection refused error for all the Domain Controllers, but in 10.2.6.-h6 version we can at lea...

Sujanya by L3 Networker
  • 5975 Views
  • 4 replies
  • 1 Likes

Resolved! Checkpoint to PaloAlto

Hi Team, We have Checkpoint 5400 may i know which will be the replacement model in PaloAlto? Is there any Link to compare before we plan the migration? Regards, Sanjay S

Resolved! Primary MPLS/BGP and secondary Internet site to site vpn

I recently started a new job and they have their firewalls setup with two circuit connections. Primary is MPLS running BGP and secondary is internet with a Site to Site VPN and static routes pointing to this tunnel. I'm not aware of what has been set/configured to make the traffic choose the MPLS/BGP interface vs the Site to Site interface, in m...

Resolved! Maximum number of FW admin sessions

Hi CommunityI was teaching a class and was asked a simple question:Is there a max number of FW administrators that can be concurrently logged into the FW at the same time?I have a large customer (a Managed Service Provider) with a large number of FWs, as well as a international team supporting the customers.It is possible to have many admins log...

scantwell by L4 Transporter
  • 12042 Views
  • 7 replies
  • 0 Likes
  • 24383 Posts
  • 123 Subscriptions
Top Solution Authors
Labels