General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4238 Views
  • 0 replies
  • 0 Likes

PA 5050 Admin Account Rename/Deletion

Hi AllI am using one PA 5050 firewall and all is working fine. Just want to know if I can rename or delete the Admin (Default) account in the box. This account is default account and is there any limitation if we delete it or rename it. If I delete it , is there anything which I will loose as far as the Administration of the box is concerned.Pl...

itsecll by L1 Bithead
  • 3770 Views
  • 2 replies
  • 1 Likes

Resolved! What did I miss? Cross-zone/vpn traffic

New PA200 installed and working on getting it setup. Aside from a 2wk demo, I have little experience with PAN.I've got a Site-To-Site VPN configured to an ASA5505 at another of our offices.I have one zone setup for a Wifi network. (Called Wifi) IP space behind that zone is 172.168.1.0/24. Interface 1/3 is configured with the IP 172.168.1.1 PAN i...

Nathan.S by L3 Networker
  • 11819 Views
  • 18 replies
  • 0 Likes

HA-system separated with two datacenters

Man have two datacenters and there are about 15-20km between them. The datacenters are connected by dark fiber with 1Gb bandwidth, is it possible to make HA-system to this setup? I mean so, that one of the PA-unit is in the primary datacenter and another is in the secondary.--Janne

GP and Multiple Gateways

I get from the documentation that GP client can automatically detect the best GP Gateway to connect to via response times.Does anyone know the exact process the GP client uses to connect to a deployment with multiple gateways.In this case we have on GP Portal and Gateway on the same FW on the east coast, and have a second Gateway on the West coa...

msamoska by L1 Bithead
  • 4655 Views
  • 3 replies
  • 0 Likes

Resolved! NAt problem with paloalto

Hi,i have 3 zone trust untrust and dmzdmz:91.239.204.0/24trust:10.0.0.0/8untrust: anything when i try to nat from untrust to trust 91.239.204.22--->10.1.1.34 packet goes to dmz interface...i think problem is nat before routing or routing before nat because dmz and nated interface same subnet group...How can i resolve this problem.?

lildeniz by L3 Networker
  • 3532 Views
  • 2 replies
  • 0 Likes

Resolved! Looking for GPClient for Android

Palo Alto Networks Announces GlobalProtect For Android™ Mobile OSAccording to above press release, it is available now, though I can't find it.It says "GlobalProtect for Android is currently available for download from Google Play™. ".Could somebody tell me direct link for it?Regards,Emr

emr_1 by L6 Presenter
  • 4761 Views
  • 6 replies
  • 0 Likes

packets dropped because of failure in tcp reassembly

Hello all,Here is network diagram as belowJuniper FW(Branch) |Internet |PalAlto (HA A-P) |BackBone - Juniper FWMy customer use IPSec VPN between both Juniper FWs.PaloAlto active device changed from #1 device to #2 device at last week(Link Fail-Over)Then they doesn't connect IPSec VPN.I have checked 'global count' between 2 hosts.It incr...

Resolved! Locked user list

I've been getting this error for a user on our Captive portal:User 'neoguest' failed authentication. Reason: User is in locked users list From: 172.16.10.100.I've searched how to unlock the user but I haven't found any info on that.Can anyone send some info on how to unlock this user because I tried deleting and recreating the same user but the...

VPN & Portal on PA2020 running only Virtual Wires

hiOur network has 3 separate connectivity to the internet and all of them are connected via virtual wire on our PA2020 and the only other network connection is the management port on a fixed internal IP... total 7 ports used (3 pairs for the 3 virtual wires & 1 management).is it possible to setup VPN & Captive portal on such a setup?tha...

RonaldGo by L2 Linker
  • 3294 Views
  • 4 replies
  • 0 Likes

PAN OS 5.0.2 missing route

Did anyone see this situation.We have PA 3020 running 5.0.2 and a route based vpn to another PA box.unable to ping the other side of the tunnel or even the other side's tunnel interface IP address. Weird issue never seen this before.Anyone see this before? Please let me know. ThanksJunaid

  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels