General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 14541 Views
  • 1 replies
  • 4 Likes

BGP filter route only for /32 prefix

Hi Experts,

 

My question is, my Cisco switches advertise host routes to FW from many VLANs/VRFs together with other network routes, we want the firewall Not to accept the any routes with subnet mask /32 but accept anything else, can you help to see if

...

rahul.k by L0 Member
  • 997 Views
  • 1 replies
  • 0 Likes

Agentless User-ID agent permissions

We are attempting to use the agentless User-ID setup with the understanding that the service account needed to be a member of the following AD groups: Distributed COM Users, Event Log Readers, and Server Operators. However, after reading the followin

...

Dynamic Address Group with Azure monitoring

https://docs.paloaltonetworks.com/vm-series/9-1/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/vm-monitoring-on-azure/set-up-vm-monitoring-on-azure.html

 

In the end article tells to create DAG but how do I add VM's automatically to this g

...

raji_toor by L4 Transporter
  • 1023 Views
  • 2 replies
  • 0 Likes

SNMP and Netflow

PAN 9.1.8 has SNMP V3 configured base on

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClHOCA0

with Netflow on AE5.30, ae5.50, and ae5.60 of the 5260 base on 

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/monitor

...

arhong by L1 Bithead
  • 1228 Views
  • 5 replies
  • 0 Likes

Content filtering for MAC OSx

I am trying to finalize my content filtering for our PA 820 rollout. I have the user-ID, group mapping and content filtering rules (By group) working just fine for my windows PC's. Where I am stuck is trying to figure it out for all of our MAC OSx us

...

RussMc by L1 Bithead
  • 820 Views
  • 2 replies
  • 0 Likes

Resolved! PA Packet Capture Data Storage Location (CLI)

I’m trying to figure out how to view the data location of an in progress packet capture in the CLI. I’m aware of the current packet size in the GUI, but I would like to see where the data is logged in the CLI along with the current available storage

...

IsaiahF by L0 Member
  • 1009 Views
  • 2 replies
  • 0 Likes

OSPF stopped gracefully restarted

 

Hi Team,

 

We are facing issue with OSPF is not working properly over the firewall as per the configuration part seems fine we checked with the below given document.

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm5ZCAS

 

All

...

OSPF issue.jpg

Log redistribution after adding additional log disk.

Recently we added a 2TB log disk to this virtual Panorama running 8.1.19 on VMWare ESXi 6.5

 

 

Once adding, the log redistribution process on the local log collector started as has been progressing very slowly. Over the course of 15 hours this job prog

...

Resolved! Global Protect MFA Vendor Support

I am a bit confused with the MFA vendor supported by the firewall, because the Compatibility Matrix says that  MFA server profile is not supported for Global Protect?

https://docs.paloaltonetworks.com/compatibility-matrix/mfa-vendor-support/mfa-vendor

...

BatD by L4 Transporter
  • 5677 Views
  • 6 replies
  • 0 Likes

Is there CLI - Enable and Commit Policy

Dear all, 

 

Since my WebUI is not responding even with a system reboot and management restart by CLI,  SSH works fine, 

 

Is there a way by CLI to enable and commit Policy?

 

Any help would be greatful.

 

Thanks, 

Sean

Top Liked Authors