General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1250 Views
  • 0 replies
  • 0 Likes

PAN-OS 11.0 Explicit proxy with no authentication

 

Hello,

 

may it be possible to use explicit proxy feature in PAN-OS 11.0 with no authentication and allow access for all users?

 

The documentation is very limited in this area and describes SAML or Kerberos authentication only.

 

Thanks 

Lumir

 

itsnoc by L1 Bithead
  • 4385 Views
  • 7 replies
  • 0 Likes

Resolved! Some CVE Not Present In PA NGFW

Dear Team,

 

I hope all of you are doing well. 

I have some CVE IDs from my Tie 1 firewall, which is Check Point. I have checked all of those CVEs in the Palo Alto firewall, and most of them weren't available.

 

Could someone explain or advise me on

...

version recomendada de PA-445

donde puedo verificar la version recomendada de actualizaccion de software para firewall pa-445,

en tratado de ver en esta direccion  :https://live.paloaltonetworks.com/t5/customer-resources/support-pan-os-software-release-guidance/ta-p/258304

 

pero

...

PA-3420 will not detect SFPs on any port

My backup PA-3420 in an HA peer will not detect SFPs or link on any port (including copper) but the management. The primary unit detects and links on multiple SFP slots with multiple different SFP types and brands. The same SFPs in the backup unit wi

...

Resolved! Can not check Forward Trust Certificate

Hello. 

I'm having an issue with a setup of decryption.

 

we have a custoemr who wants decryption. and they also have an entreprise CA. 
to have the least user impact they wanted to use an entreprise signed certificate for their ssl forward trust. 

I crea

...

PA-3420 sudden restart issue

Hi all,

One of our clients has a PA-3420 HA-pair device with an active-passive setup, one day they noticed that their firewall went to reboot. Upon checking there are no signs on the system logs that encountered power interruption or hardware failure

...

Daryl_Cruz_0-1704781577308.png

Resolved! HA failover logs

In PA-3220, are HA logs enabled by default? Does these logs contain the reason for transition between HA primary and secondary?

Resolved! Botnet reporting error command failed with no output

Hi All,

Did a replacement of a PA FW 5260 (pan-os 10.1.x) with a 5420 (pan-os 10.2.7)

everything is working as expected.. however not able to view any botnet reports.

botnet config in place under monitor\botnet\configuration.

licenses are in place an

...

PA_nts by L4 Transporter
  • 2794 Views
  • 2 replies
  • 0 Likes

Cisco ASA PA ipsec issue

Hi,

 

We have recently come across an interesting issue between a Cisco ASA ikev2 tunnel with a PA. 

If I was to failover the PA to an HA peer, traffic initiated from the Cisco ASA continues to flow whilst traffic initiating from the PA stops.

 

I noticed

...

Resolved! Commit Error: failed to handle CONFIG_UPDATE_START Issue

Hi All,

 

I think  most of you had experienced this failure issue once in your worklife  This error reason is mostly because config memory usage is too high.

>debug dataplane show cfg-memstat statistics

As we all know the number of custom url is limite

...

Resolved! Queries on OSPF Route Summarization

Customer have configured OSPF peering with firewall and switches.

Have multiple OSPF peering with different ZONEs via each sub interfaces. Currently we are receiving around 4k routes at DCE-ES for each peering. Since ES switch hardware not supporting

...

  • 24175 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels