General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 14501 Views
  • 1 replies
  • 4 Likes

Dynamic Address Group with Azure monitoring

https://docs.paloaltonetworks.com/vm-series/9-1/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/vm-monitoring-on-azure/set-up-vm-monitoring-on-azure.html

 

In the end article tells to create DAG but how do I add VM's automatically to this g

...

raji_toor by L4 Transporter
  • 1001 Views
  • 2 replies
  • 0 Likes

SNMP and Netflow

PAN 9.1.8 has SNMP V3 configured base on

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClHOCA0

with Netflow on AE5.30, ae5.50, and ae5.60 of the 5260 base on 

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/monitor

...

arhong by L1 Bithead
  • 1200 Views
  • 5 replies
  • 0 Likes

Content filtering for MAC OSx

I am trying to finalize my content filtering for our PA 820 rollout. I have the user-ID, group mapping and content filtering rules (By group) working just fine for my windows PC's. Where I am stuck is trying to figure it out for all of our MAC OSx us

...

RussMc by L1 Bithead
  • 804 Views
  • 2 replies
  • 0 Likes

Resolved! PA Packet Capture Data Storage Location (CLI)

I’m trying to figure out how to view the data location of an in progress packet capture in the CLI. I’m aware of the current packet size in the GUI, but I would like to see where the data is logged in the CLI along with the current available storage

...

IsaiahF by L0 Member
  • 990 Views
  • 2 replies
  • 0 Likes

OSPF stopped gracefully restarted

 

Hi Team,

 

We are facing issue with OSPF is not working properly over the firewall as per the configuration part seems fine we checked with the below given document.

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm5ZCAS

 

All

...

OSPF issue.jpg

Log redistribution after adding additional log disk.

Recently we added a 2TB log disk to this virtual Panorama running 8.1.19 on VMWare ESXi 6.5

 

 

Once adding, the log redistribution process on the local log collector started as has been progressing very slowly. Over the course of 15 hours this job prog

...

Resolved! Global Protect MFA Vendor Support

I am a bit confused with the MFA vendor supported by the firewall, because the Compatibility Matrix says that  MFA server profile is not supported for Global Protect?

https://docs.paloaltonetworks.com/compatibility-matrix/mfa-vendor-support/mfa-vendor

...

BatD by L4 Transporter
  • 5635 Views
  • 6 replies
  • 0 Likes

Is there CLI - Enable and Commit Policy

Dear all, 

 

Since my WebUI is not responding even with a system reboot and management restart by CLI,  SSH works fine, 

 

Is there a way by CLI to enable and commit Policy?

 

Any help would be greatful.

 

Thanks, 

Sean

Resolved! RADIUS And Open LDAP Integration.

Hi team,

 

I have come through as a requirement from one of my clients, They are using RADIUS Server for RSA authentication for globalprotect, but in USER ID they are using OpenLDAP, So in the ip-user-mapping, Whenever user connecting to globalprotect,

...

PA blocking windows updates?

Howdy,

 

Trying to figure this out. It almost seems that our pa220 is blocking windows updates. See my first pic, does session end reason threat mean it stopped the connection? I ask because I cannot get this update to download on any windows 10 pc in

...

fw1.JPG
fw2.JPG

Resolved! IPSec tunnel creation issue

Hello all, 

one of our customer is trying to create the IPSec tunnel between PA and Fortigate. When phase 1 is initiating in main mode negotiation failed error and we find error in system logs:

 2020-02-18 14:55:18.010 +0200 [PERR]: { 12: }: Expecting

...

Logesh by L1 Bithead
  • 7421 Views
  • 9 replies
  • 0 Likes
Top Liked Authors