General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

Resolved! User Activity Reports - No Data Available

Hi,I have inherited responsibility for our Palo Alto 2050 and am trying to run user activity reports. However, for the past week the reports have been showing "No Data Available". The only change made I am aware of was having the policy set to only log on session end however that has since been change back. Changes were committed. The policy is ...

assist by Not applicable
  • 11084 Views
  • 5 replies
  • 0 Likes

Resolved! Mass migration of static routes

We need to migrated about 600 static routes into PA 5050. I want to do this quickly and efficiently . The goal is to copy all 600 routes and paste in the running config . Any idea how to do this ?

usvi by L3 Networker
  • 3231 Views
  • 3 replies
  • 0 Likes

Traffic Report: How much destination hosts contacted

Hi Community!There is a predefined traffic report "Connections": It shows per row how much connections (sessions) a source host has made to a specific destination host. Is it possible to create a report which shows per row how much distinct destination hosts a source host has contacted? This could be useful for example to recognize if a source h...

E by L0 Member
  • 2814 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama template is not working

Hi i created a template on panorama and tried to push to a device but each and everytime it says template name invalid.i tried more than a few combinations nothing works. Any help.Posted screenshot for reference.

srikanth by Not applicable
  • 4213 Views
  • 2 replies
  • 0 Likes

Resolved! How to force Panorama to push out new configs in serial?

One of the admins mumbled today that when changing shared objects in Panorama and pushing out new configs he needed to do this one by one regarding managed devices.That is click on sync, wait until the text "out of sync" changes to "ok" (or whatever it says) and then click to sync the next device until all are synced.Is there no button to "sync ...

mikand by L6 Presenter
  • 2186 Views
  • 1 replies
  • 0 Likes

Resolved! How to get friendly name of a vsys into the syslogs?

I have followed the order described in to create a custom log format for use by a syslogserver which is much more happy of getting the logs with spacesas delimiter instead of the commas.However I noticed that the $vsys variable only gives out text like "vsys1" instead of the friendly name which is regulary used by the vsys in all configuration ...

mikand by L6 Presenter
  • 2563 Views
  • 1 replies
  • 0 Likes

Stretching L2 VLAN's over IPSec tunnel

Hi All,I am facing a nasty situation where i need to connect two sites together using an IPSec tunnel over the internet. The nasty part is where both sites have a VLAN that needs to be interconnected.. both in the same subnet. I am wondering if it is possible to stretch this VLAN between the two sites using an IPSec tunnel.This gives the followi...

bsanders by L2 Linker
  • 10020 Views
  • 4 replies
  • 0 Likes

Process impact of "Security Profile Group" all set to NONE ?

Dear all,Does a "Security Profile Group" with all security engines selected to "NONE" would have any processing(/performance) impact?Reason the so, is for future readiness. Allowing NOT to have chaning ALL individual security policies, in case we would like to enable a security content engine in this "security profile group".Thanks in advance!Ki...

wimjuste by L1 Bithead
  • 2159 Views
  • 1 replies
  • 0 Likes

Update Software on HA passive mode

I try to update software and GlobalProtect on my PA configurated on HA Passive mode but it´s impossible. "Failed to check upgrade info due to generic communication error. Please check network conectivity and try again" :-SI download de software on web but its impossible to upload from my pc. Img is Invalid.Can you help me??Thanks,Best regards,

cmadurga by L0 Member
  • 2048 Views
  • 1 replies
  • 0 Likes

Resolved! Setup SSLVPN w/ Radius Auth and limit to specific A.D. groups

What is the best way to accomplish this? I have the VPN setup with Radius auth and working correctly but in its current setup, ANY A.D. account can connect to VPN. I have already created the security groups to reference for access in A.D., just not sure where to just the access.

SDorsey by L4 Transporter
  • 2337 Views
  • 1 replies
  • 0 Likes

Policy allowing ping/snmp not performing as expected

I have a policy which allows icmp / ping / snmp-base / snmpv1 / snmpv2 however when I review the logs the traffic which matches this policy is being caught in a lower policy that is more general (and we are trying to get rid of). Someone told me that because icmp/ping are layer 3 and snmp is layer 7 that they cannot share a policy. I didn't beli...

Resolved! Traffic log CSV Export Bytes Column

Hello everybody,Software Version 3.0.5when we make an CSV export for the traffic logs,we have three columns with Bytes, called- Bytes- Bytes Send- Bytes ReceivedAll three columns have for the same row the same Byte values.So, what is it for!I thought there must be different values!Can sombody explain this, or is there a fix in another release!?K...

indevis by L2 Linker
  • 6810 Views
  • 7 replies
  • 0 Likes

Resolved! Vulnerability Protection - Exceptions?

Dear all,We've got one, okay, two little questions on the configuration of vulnerability protection:Assuming we have a security policy configured with the pre-defined vulnerability protection profile named "strict". From that policy we're getting "LDAP: User Login Brute-force Attempt" (ID 40'005, severity high) log entries from time to time. The...

oschuler by L4 Transporter
  • 5543 Views
  • 4 replies
  • 0 Likes

Resolved! Reports - Best way to see top URLs visited?

I'm struggling a little with the documentation on how to generate useful reports.If I look in the ACC or default reports I can see destinations but they are simply a mix of raw hostname and rdns lookups - they might show a lot of traffic to, say, a88-221-183-148.deploy.akamaitechnologies.com, but they won't show that traffic was actually people ...

Resolved! In which order are the fields (variables) in defaultformat for syslog?

Hi all,I use a tool for loganalyzing which isnt too happy of the PA default format for syslog which uses commas and no spaces.Like so: abc,def,ghiWhat I need is: abc, def, ghior even better: abc def ghiBecause of that I need to create a customformat for each of the syslog types Config, System, Threat, Traffic and HIP Match.Putting the variables ...

mikand by L6 Presenter
  • 3012 Views
  • 2 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels