General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 776 Views
  • 0 replies
  • 0 Likes

TS Agent and Proxy PAC file

Interested to know if anyone has the TS Agent deployed and the users are using a proxy PAC file.  We are facing an issue where intermittently internet access will stop for a period of time - we have removed the myIpAddress() from the PAC file and sti

...

IPSec Tunnel data flow

Hi All,

 

I recently established an IPSec tunnel between our Palo Alto firewall and a Fortigate device. The connection appears to be functioning properly, as indicated by a green status. However, I've noticed that instead of utilizing the IPSec tunne

...

BRaj23 by L0 Member
  • 610 Views
  • 1 replies
  • 0 Likes

Resolved! Palo Alto Proxy IDs Bidirectional?

Hi everyone,

I am a bit confused about proxy IDs when it comes to tunnel negotiation. Lets say I have a tunnel I am building with a vendor. My encryption domain will be 192.168.1.0/24 and my vendor will have 192.168.2.0/24. So lets also say the vendo

...

PAN-186584

Happy Friday, 

 

Have anyone experimented similar  behavior reported under PAN-186584 on VM-Series?

#PAN-186584

Pre go-live Health checks for auto deployed VMs in AWS

Not sure how to post in the automation section anymore as it now has been moved to read only.

 

Anyways.. need some insight please.

so we recently did a POC to use Terrarorm to autoscale / deploy VMs in AWS cloud. all good and working.

However we nee

...

PA_nts by L3 Networker
  • 880 Views
  • 2 replies
  • 0 Likes

Resolved! Why cant a URL be used directly in a policy?

Hi, 

I understand that to block an individual URL it has to be in a custom category before it can be used in a policy as a destination. For my own education and curiosity, my question is why must it be in a category? What is the processing logic in th

...

ABurger by L0 Member
  • 1240 Views
  • 2 replies
  • 0 Likes

HA mode with vwire

Not sure it this is the right location for this question but here we go ...
I'm trying to replace 2 transparent ASA's in ACT/STDBY with 2 Palo's in the same setup vwire ACT/PAS. Current setup is the asa's are connected to 2 vpn servers in ACT/PAS conf

...

Chromebook usernames in Palo Alto logs.

Hi,

I was wanting to know if it is now possible to have the Palo Alto firewall log url traffic with the username from chromebooks.  It shows the username for all windows users as it syncs with AD, but can't get the chromebook users to show up.  I set

...

dholmes by L0 Member
  • 1935 Views
  • 3 replies
  • 0 Likes

how to disable the url-cloud-connect

the customer firewall pa3220,version :10.2.1, the mgt interface could not access internet,so that firewall could not upgrade the url database.

but the system log dispaly some high log:url-cloud-connect-failure,the customer want don't see these log.

fir

...

Felixcao by L3 Networker
  • 4009 Views
  • 3 replies
  • 0 Likes

VPN event messages keep receiving

Hi,

I have two IPSec tunnel configured between Azure PA firewall and cisco router.

worried about continuously getting the informational event logs ikev2-nego-child-sart,  ikev2-nego-child-fail & ikev2-recv-p2-delete

Did the setting DH group to No PFS

...

VirupakshaRajapur_0-1691068863263.png
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels