General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4442 Views
  • 0 replies
  • 0 Likes

Resolved! What does the configd process do for PAN-OS?

I'm documenting new services in PAN-OS present in 10.x. What does the configd process do? It appears to bind to udp/28879 (if only accessible "internally"). I do not see this service described in the Commonly Used Processes/Daemons url found here: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLUeCAO

jasonroy by L3 Networker
  • 5257 Views
  • 3 replies
  • 1 Likes

Cyserver stopped by ntdll.

Hi team, Recently, We discovered endpoints that got disconnected from the console and there is no clue on trapsd why it happened because the agent didn't record logs since its last_seenn on the console, for example; the agent has a last_seen on 1 May 2024 and you reconnected the agent on 4 May 2024, there are no logs between 1 May and 4 May. ...

MarcoMJ by L1 Bithead
  • 2682 Views
  • 1 replies
  • 1 Likes

Email laerts for just zone protection alerts

Hello all, I have applied a zone protection profile to the outside zone on my firewall. I am wondering how I can configure the firewall to receive email notifications just for alerts for this zone protection profile. Like every time an IP address is blocked by the firewall. Thank you

Resolved! GlobalProtect and other VPNs

Good afternoon friends 🙂 I have some doubts regarding the application of GlobalProtect VPN, which is mandatory in my work. I have a few questions and would love to hear the community's answers regarding the below. I'm in Ireland and I would like to work outside the country for a few days. I have been contacting a VPN provider to provide me wit...

Panorama Push Failure

hello I am deploying a GP Portal/Gateway configuration on a Panorama platform the commit to Panorama is successful the push to the device is failing as shown below tunnel.199 has a virtual router configured has anyone seen this issue before ?

SByrne_0-1714735050886.png
S.Byrne by L3 Networker
  • 1314 Views
  • 2 replies
  • 0 Likes

Resolved! PA-VM 10.0.4 Deployment

Hello all,I requested for a PA-VM evaluation license using 10.0.4, tried using VMware Workstation import the .OVA using 6Gb RAM and 4 cores, everything looks fine, until it gets a management IP a few seconds later says "Broadcast message from root" and "The system is going down for system halt NOW" stops PAN Software and shutdown virtual machine...

Global Protect Portal/Gateway infrastructure

hello I would like to add a new IP address to create a new GP portal/gateway the IP Address I have been given by the provider is not available to select as an IP Address I created a tunnel and configured an IP address but that has not solved the issue Q what has to be configured for the new public IP address to be selectable ? thank you

S.Byrne by L3 Networker
  • 1097 Views
  • 1 replies
  • 0 Likes

high availability

hello I have 2 x 440 series to configure for HA active/standby I plan to use ethernet 1/5 , 6 , 7 & 8 for the Data & Control links I have connected the interfaces to test when I select interfaces under "HA Communications" only the management interface is available in dropdown -- the other ethernet interfaces are not available as an op...

S.Byrne by L3 Networker
  • 2766 Views
  • 5 replies
  • 0 Likes

Intregate Captive Portal Palo Alto with Aruba clearpass

Hi Expert , I would like to know about intregate authen captive portal itself for identify byod of palo alto with clear pass the clear pass have pull information with ldap my question is below - Palo alto can connect just clear pass for authen ? with out directly connect ldap - how can deploy cert with client to avoid warning cert can us...

Resolved! Action=Allow while NATDestinationIP=0.0.0.0

Hello, I am not a firewall administrator I am an analyst who reports alerts on suspicious behavior based on indicators of compromise matches, mostly related to ransomware and IP addresses with bad reputation. I have a big doubt because I always generate the alerts from the SIEM starting from the Action=allow field but I have noticed as you c...

JuanLondono1_0-1714499856570.png

Resolved! Ping Failed (aged out)

Hello friends, I configured site-to-site vpn between two firewalls and the ping from network behind firewall (internal network) to other internal network is failed (timeout) while the traffic shows allowed in the firewall logs. The Tunnel is Up and Green status. The configuration is the same on both firewalls and straightforward. Policy allows...

Hayder by L0 Member
  • 2718 Views
  • 2 replies
  • 0 Likes

Resolved! Can't create case, get salesforce error (ever since my day 1)

I can get logged in to https://support.paloaltonetworks.com, but when I attempt to create a new case I get a Salesforce error: https://supportcases.paloaltonetworks.com/_nc_external/identity/saml/SamlErrorSingle Sign-On Error We can't log you in because of an issue with single sign-on. Contact your Salesforce admin for help. What do I do? I h...

pbrosthp by L0 Member
  • 1709 Views
  • 1 replies
  • 0 Likes

PBF with NAT, how does it works?

Hi GuysAccording to document , if there's destination NAT , there'll be second routing lookup to decide outbound zone & interface. But I'm very confused when there's routing and PBF together, In the second routing lookup, how does PBF rule work? Does PBF work based on Pre-NAT destination address or Post-NAT destination address? According to ...

JTR by Not applicable
  • 13965 Views
  • 4 replies
  • 0 Likes
  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels