General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Using the REST API to create a bunch of Address Objects

I have to create a large number Address Objects and would like to use teh REST API to do so. I've seen a number of examples at adding various things, but I'm running into an issue with these specific shared objects. The all live in a device group called Global. If I do a GET, I see that an object will look as follows {"@name":"net-vl730-boise"...

DaveFitz by L0 Member
  • 5755 Views
  • 1 replies
  • 0 Likes

TUNNEL STATUS RED AWS PAN TO ONPREM PAN

Hi Guys, Need your help, as I cannot figured out what's wrong with my configuration. Both side of my Phase 1 are working fine but when it comes to Phase 2 connection is not complete. Any idea how to fix this issue? Here is my AWS PAN configuration. Please note that my local IP is a private IP address which is I think due to being a VM PAN b...

MCipriano_0-1714708155306.png
MCipriano_1-1714708264907.png
MCipriano_2-1714708425551.png

Resolved! What does the configd process do for PAN-OS?

I'm documenting new services in PAN-OS present in 10.x. What does the configd process do? It appears to bind to udp/28879 (if only accessible "internally"). I do not see this service described in the Commonly Used Processes/Daemons url found here: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PLUeCAO

jasonroy by L3 Networker
  • 5516 Views
  • 3 replies
  • 1 Likes

Cyserver stopped by ntdll.

Hi team, Recently, We discovered endpoints that got disconnected from the console and there is no clue on trapsd why it happened because the agent didn't record logs since its last_seenn on the console, for example; the agent has a last_seen on 1 May 2024 and you reconnected the agent on 4 May 2024, there are no logs between 1 May and 4 May. ...

MarcoMJ by L1 Bithead
  • 2857 Views
  • 1 replies
  • 1 Likes

Email laerts for just zone protection alerts

Hello all, I have applied a zone protection profile to the outside zone on my firewall. I am wondering how I can configure the firewall to receive email notifications just for alerts for this zone protection profile. Like every time an IP address is blocked by the firewall. Thank you

Resolved! GlobalProtect and other VPNs

Good afternoon friends 🙂 I have some doubts regarding the application of GlobalProtect VPN, which is mandatory in my work. I have a few questions and would love to hear the community's answers regarding the below. I'm in Ireland and I would like to work outside the country for a few days. I have been contacting a VPN provider to provide me wit...

Panorama Push Failure

hello I am deploying a GP Portal/Gateway configuration on a Panorama platform the commit to Panorama is successful the push to the device is failing as shown below tunnel.199 has a virtual router configured has anyone seen this issue before ?

SByrne_0-1714735050886.png
S.Byrne by L3 Networker
  • 1348 Views
  • 2 replies
  • 0 Likes

Resolved! PA-VM 10.0.4 Deployment

Hello all,I requested for a PA-VM evaluation license using 10.0.4, tried using VMware Workstation import the .OVA using 6Gb RAM and 4 cores, everything looks fine, until it gets a management IP a few seconds later says "Broadcast message from root" and "The system is going down for system halt NOW" stops PAN Software and shutdown virtual machine...

Global Protect Portal/Gateway infrastructure

hello I would like to add a new IP address to create a new GP portal/gateway the IP Address I have been given by the provider is not available to select as an IP Address I created a tunnel and configured an IP address but that has not solved the issue Q what has to be configured for the new public IP address to be selectable ? thank you

S.Byrne by L3 Networker
  • 1128 Views
  • 1 replies
  • 0 Likes

high availability

hello I have 2 x 440 series to configure for HA active/standby I plan to use ethernet 1/5 , 6 , 7 & 8 for the Data & Control links I have connected the interfaces to test when I select interfaces under "HA Communications" only the management interface is available in dropdown -- the other ethernet interfaces are not available as an op...

S.Byrne by L3 Networker
  • 2854 Views
  • 5 replies
  • 0 Likes

Intregate Captive Portal Palo Alto with Aruba clearpass

Hi Expert , I would like to know about intregate authen captive portal itself for identify byod of palo alto with clear pass the clear pass have pull information with ldap my question is below - Palo alto can connect just clear pass for authen ? with out directly connect ldap - how can deploy cert with client to avoid warning cert can us...

Resolved! Action=Allow while NATDestinationIP=0.0.0.0

Hello, I am not a firewall administrator I am an analyst who reports alerts on suspicious behavior based on indicators of compromise matches, mostly related to ransomware and IP addresses with bad reputation. I have a big doubt because I always generate the alerts from the SIEM starting from the Action=allow field but I have noticed as you c...

JuanLondono1_0-1714499856570.png

Resolved! Ping Failed (aged out)

Hello friends, I configured site-to-site vpn between two firewalls and the ping from network behind firewall (internal network) to other internal network is failed (timeout) while the traffic shows allowed in the firewall logs. The Tunnel is Up and Green status. The configuration is the same on both firewalls and straightforward. Policy allows...

Hayder by L0 Member
  • 2799 Views
  • 2 replies
  • 0 Likes
  • 24412 Posts
  • 125 Subscriptions
Top Solution Authors
Labels