General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 3752 Views
  • 0 replies
  • 0 Likes

PA 200 Device

I am trying to create L3 subinterfaces on a PA200.  I get through the whole process (create subinterfaces (untagged), create zones, policies, etc, etc)

I can ping new L3 interface from devices on the new L3 subnet, but that is it.  Is this a PA200 dev

...

snormoyle by Not applicable
  • 1961 Views
  • 1 replies
  • 0 Likes

IPv6 to IPv4

Hi,

Can we do IPv6 to IPv4 mapping in Palo Alto? Let's say I have a public IPv6 and I want to map it to my IPv4 internal servers for NAT purposes.

Thanks,

Rex

DNS Proxy Functionality does not work

Hi all,

i want to use the dns-proxy functionality of the palo alto to do the following:

Software Versiob 4.0./ here.

1. Proxy dns request for guests

2. Reply to 2 speciel reverse lookups with names which i configure on the palo alto

What i did already:

->

...

cfpa by L1 Bithead
  • 2076 Views
  • 1 replies
  • 0 Likes

custom report - vpn users activity

Hello

Im looking for solution how to create custom report that shows activity of VPN users (authenticated in local database). In this report I need time of connection/disconnection IP login name and status (success or false) of connection.

I spend a lo

...

_slv_ by L4 Transporter
  • 2749 Views
  • 2 replies
  • 0 Likes

Vwire NAT

I am trying to setup NAT with vwire.  According to Palo Alto this is possible with PAN OS 4.1 and I am on PAN OS 4.1.6.  I have setup NAT with L3 on the PAN devices so I have an idea on how to do this setup.  When I setup NAT policy on the PAN device

...

snormoyle by Not applicable
  • 2665 Views
  • 3 replies
  • 0 Likes

Using Purchased Certificate for SSL-VPN Portal/Gateway

We have our GP portal/gateway externally facing. We’ve designated a host name for people to access the portal so they don’t have to remember the IP address - from both Untrust and Trust Networks. Currently the portal throws a certificate warning in i

...

cmateam by L3 Networker
  • 3218 Views
  • 2 replies
  • 0 Likes

Active-Active or Active-Passive

Currently, we have two PA 2050s each hooked into a Brocade FCX switch, which are stacked together. We cando a heartbeat connection over our datacenter's switch, so if one of our drops fails, it will failover. However, reading through the configuratio

...

lorr by Not applicable
  • 5446 Views
  • 1 replies
  • 1 Likes

Hide Public IPs

I've been getting a lot of traffic from 'unfriendly' countries trying to gain access to a service we provide via one of our NAT'ed public ip address. I know for a fact they have no business connecting to that service. Is there a setting on the Palo A

...

mark1ped by Not applicable
  • 3156 Views
  • 1 replies
  • 0 Likes

Resolved! IPSec VPN tunnel no longer working

Hello guys

We have a few VPN tunnels between our PA-2050 (in HA cluster) and some WatchGuard firewalls (different models). We migrated these tunnels to the PA-2050 a few weeks ago and they ran stable. Now suddenly two of 10 tunnels are down and we don

...

oschuler by L4 Transporter
  • 19543 Views
  • 18 replies
  • 0 Likes

Resolved! Internal route problem

Had a question about internal routing.

We have eth port assigned to a trust network which is a 192.168 network.  We also have a Avaya VoIP PBX that is vLan'd on this network and the routing is managed on an internal core switch to access this network.

...

cmateam by L3 Networker
  • 4780 Views
  • 3 replies
  • 0 Likes

VWire

I have configure a 2050 in a vwire configuration can I still utilize layer3 on the device.  From what I have been reading if I configure PAN device for vwire then the device cannot due any layer3 funcationality.

snormoyle by Not applicable
  • 2508 Views
  • 2 replies
  • 0 Likes
  • 24337 Posts
  • 122 Subscriptions
Labels