General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Unresponsive support @clico

Hello, We've got an issue with a PA3250 and the thing is that support went silent on us. They were supposed to provide us with an answer before 14.12.2022 and we haven't heard from them. Calling them doesn't work, as they don't pick up their phones. What's going on? How can we address this?

silviub by L0 Member
  • 2828 Views
  • 3 replies
  • 0 Likes

Resolved! Monitoring Global Protect

I'm currently in the process of migrating my company from AnyConnect to Global Protect on our 5220s. I'm looking for your feedback on how you all "monitor" the VPN service? When comparing the "dashboard" view of Cisco's ASDM I don't really see anything which can be loaded on the Palo "dashboard" tab. It seems like the only real way is to look ...

Incomplete release notes

Hello, why do I have to go there: PAN-OS 10.2.7-h6 Addressed Issues (paloaltonetworks.com) to find some unresolved issues in 10.2.8 ? i.e PAN-242627 or PAN-246431

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature works! Why do accepted solutions matter? By marking a reply as an Accepted Solution, you cont...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 11818 Views
  • 3 replies
  • 15 Likes

Basic Palo Alto configuration Help

I am very new to PA firewalls. To understand the firewalls I have setup a lab and also worked on the physical firewall. Following my topology PA - Switch - PA VLAN 100 Ip : 192.168.1.5/30 and 192.168.1.6/30 Zone WAN Mgmt profile : ping enable interface : L3 sub interface 1/1.100 - tag 100 Nothing else is configured. I am try...

gondolf by L1 Bithead
  • 2694 Views
  • 2 replies
  • 0 Likes

Citrix Receiver on Globalprotect

I seem to have Globalprotect working fine for access to any internal resource.The one thing that does not seem to be working is the connection Citrix Receiver (PNAgent legacy version 13.3) makes to our internal Citrix Web Interface / Services site.I'm getting the error "citrix receiver could not contact the server. please check your network conn...

dieter_b by L4 Transporter
  • 14542 Views
  • 5 replies
  • 1 Likes

Resolved! VM monitoring sources attributes/annotations

Does anyone know more on the use of the "annotation" field for use in a dynamic address group from a vm information source?Can the notes or tags field in the summary tab in vCenter be used to apply custom annotations? Any assistance on the syntax would be great since PAN dosn't seem to provide much on this that I could find.The goal is to be abl...

vc.jpg
dag.jpg

GlobalProtect and using split tunneling

Global protect has the handy feature of excluding select destinations from being sent over the vpn. For example, setting(Split Tunnel - Domain and Application - Exclude Client Application Process Name) https://docs.paloaltonetworks.com/globalprotect/4-1/globalprotect-app-new-features/new-features-released-in-gp-agent-4_1/split-tunnel-for-public-...

Resolved! USER ID MAX USERS IN A GROUP???

Hello,I've configured on PA5060 an Idenfication with AD:PA5060: 4.1.6 USER ID AGENT : 4.1.4-3LDAP SERVER 389 I do a group mapping by group but this group have more than 16000 users.when I do a show user usersIDS , I can't see all my users. I know that AD have a limitation of page size to 1000 users by request.do you know if they are an limit...

alle by L3 Networker
  • 19965 Views
  • 10 replies
  • 0 Likes

Can't install device certificate

Hello, I'm trying to install a device certificate as instructed in the manual. I generate OTP using my account, I indeed see my valid serial number, get the OTP. Then I copy-paste to the firewall GUI and get the following error: I'm connected to the internet, did setup of DNS and NTP servers. Thank you very much.  

Screenshot 2024-04-17 173742.png
YonatanG by L1 Bithead
  • 1854 Views
  • 2 replies
  • 0 Likes

TS agent SSL error

Hello, I've been trying to add a new TS agent on my firewalls. As there is no redistribution for user-{ip+port} mapping, I want to map the TS agent to 2 FWs. Backend FW is connected correctly, Frontend FW is in error.I can capture the following between FW and TS agent :- FW to TS : SYN- TS to FW : SYN/ACK - FW to TS : ACK- FW to TS : RST I've g...

MMerlier by L1 Bithead
  • 7355 Views
  • 4 replies
  • 0 Likes

Resolved! Edit personal information

I'm trying to update some personal information (my last name), but when i save the configuration, it doesn't actually save. On the other hand, my last name changed and now its my name (Lucas Lucas). Please help me, i can't find any Customer Service number about problems like this one, only TAC.

loropeza by L1 Bithead
  • 1936 Views
  • 2 replies
  • 0 Likes
  • 24428 Posts
  • 125 Subscriptions
Top Solution Authors
Labels