General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

shadowed rules not showing in cli commit

I need get the shadowed rules name list and remove them, my firewall OS version is 10.1.11, the shadowed rule warning is not there any more in commit, is there a switch on command to show this warning?

Packet Buffer Protection Configuration

Is there something misconfigured with my packet buffer protection or is BPA and AI-Ops just flagging it incorrectly?

 

 

Configure Packet Buffer Protection (paloaltonetworks.com)

 

Claw4609_0-1678398676021.png
Claw4609_1-1678398682639.png
Claw4609_2-1678398716174.png
Claw4609 by L5 Sessionator
  • 749 Views
  • 1 replies
  • 0 Likes

RedHat IPA authentication on Palo Alto

Hi,

 

When using RedHat or CentOS IPA authentication on Palo Alto firewall, we may ran into challenges when adding LDAP Server Profile and GP Clients functionality related issues.

  1. LDAP Server Profile - On a traditional RedHat or CentOS IPA server there
...

vjbennet by L0 Member
  • 3135 Views
  • 3 replies
  • 0 Likes

Update of Default Trusted Certificate Authorities?

I am just curious - in which way is the list of trusted certificate authorities (WebUI: Device > Certificate Management > Certificates Default Trusted Certificate Authorites) updated? By firmware update or by dynamic update?

 

Regards,

Sylvia

sylvia by L1 Bithead
  • 4395 Views
  • 4 replies
  • 1 Likes

PSE software firewall associate

Dear all, 

I need your help to find my exam question, I am really confussed some question about PSE software firewall associate. Please help me to find right answer. 

1. What is the preferred way to analyze traffic logs generated from multiple data c

...

Tugsbold by L0 Member
  • 1727 Views
  • 1 replies
  • 0 Likes

advertise inter-vr route to BGP

Hi,

 

I have RBVPN with BGP and I need to advertise routes that have a next-hop to another VR. They do not seem to be advertised to BGP (currently I advertise only connected routes, not static). Is there a simple way to add these routes from another

...

MiikaR84 by L0 Member
  • 789 Views
  • 1 replies
  • 0 Likes

Recover Deleted Customer Support Portal account

Anyone have any idea how to create a user account with an email that was already used prior?

 

I created an account but messed up and deleted it. Unfortunately I did not mess up the email so now when I try to create the account again, it says the ema

...

Resolved! PA-440's, and Redundancy

Can you setup/configure 2 PA-440's inter-connected with one being a failover for redundancy in case the other bricks?  Or only Dual ISP redundancy using Static Routes Path Monitoring feature, for Traffic failover?

 

Is it even possible to setup 2 PA-

...

Group of Regions / Region Groups

Is there a specific reason that this feature is not yet available? It's a bit of a pain from a readability perspective to have a massive list of Regions tied to multiple policies, to say nothing of having to update multiple policies which may referen

...

charlesw by L1 Bithead
  • 3088 Views
  • 3 replies
  • 2 Likes

PA firewall dropping fragmented packets

Hello,

 

 

We've seen Netflow Traffic being dropped by the Palo Alto firewall based on the packet captures taken. No zone protection profile is set. DF bit is set to zero. MTU settings are fine and fragmented packets are less than 1500. However, FW is n
...

Netflow.jpg
Farzana by L4 Transporter
  • 3717 Views
  • 1 replies
  • 0 Likes

About Captive Portal

Hello,

 

I followed the link below to configure Captive Portal

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000CqbiCAC

When I finished, I found that I was able to successfully browse the Yahoo!

However, when I wanted to bro

...

young19918_0-1677734752579.png
young19918_1-1677734840519.png

Panorama drops devices from device groups

Panorama shows that all devices have "No device group assigned" in the Managed Devices, Summary screen, but the devices look fine in the Device groups screen.

This is also resulting in being unable to commit changes to the firewalls.

 

This issue happen

...

  • 24255 Posts
  • 99 Subscriptions
Top Liked Authors
Labels