General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1724 Views
  • 0 replies
  • 0 Likes

Resolved! Net Connect Verus Global Protect

What is the difference between the license version and non-license version of the global protect? Is there some documentation on what we would get with the license version verus the non-license version? I would like to have some kind of documentation

...

HA questions

Hello,

I'm having trouble understanding how Active/Passive HA works in Palo Alto. In other solutions the active device has a virtual address on top of its physical interface address, and when the active device goes down the passive device 'takes over'

...

u5801 by Not applicable
  • 9920 Views
  • 10 replies
  • 0 Likes

Change an address to a "shared address"

Is there an easy way to change an address to a shared address for virtuals domains.

The only way we found is to clone the address and change every policies where the address is used which is very long !

support by L1 Bithead
  • 3138 Views
  • 2 replies
  • 0 Likes

Resolved! Anti-virus and "Server response inspection"

I have been disabling "server response inspection" by default in all my policies as it is documented in a number of places (including independent group tests) that this improves the overall firewall performance, and I was under the impression that SR

...

Slow commit

Hi,

I'm running the latest firmware from PAN on a PA-500.  Not long ago the commit was pretty fast, like 1 minute or so.

I haven't done any major changes, but i've noticed the commit has become gradually slower as time passes.  Now its really slow!

Can

...

johnd by L2 Linker
  • 3068 Views
  • 3 replies
  • 0 Likes

Resolved! Cannot update software since upgrading to 4.1

Hello all,

I recently upgraded to the 4.1 OS from 4.0.1. The firewall settings are fine but for some reason whenever the firewall tries to download any new software like 4.1.1, GlobalProtect, Dynamic Updates it keeps getting the error "Failed due to n

...

devere by L2 Linker
  • 9550 Views
  • 13 replies
  • 0 Likes

Resolved! SSL-VPN usage report

I'm probably overlooking something obvious.. but I can't seem to find a way to generate a login / session report of SSL-VPN users.  Can anyone give a brother a hint?

nwallette by Not applicable
  • 4708 Views
  • 4 replies
  • 0 Likes

Console Cable Scrolling

I am having issues with console cable connectivity and scrolling when working in a box.  Basically the short of it is, no matter what console program I use, albeit putty; I get about 40 lines shown, and when I go to view more it overwrites the bottom

...

mcole by Not applicable
  • 2980 Views
  • 2 replies
  • 0 Likes

Resolved! user-id agent connection issues

Hi,

We are trying to connect our PAN 2050 OS 4.0.9 to a couple of user-id agent version 4.1.3. The connection is not established and the agent logs reports:

Device thread 1 SSL no certificate

Device thread 1 reply ver 5 msg with max ver 5, msg type 6

Fai

...

ajripa by Not applicable
  • 3915 Views
  • 1 replies
  • 0 Likes

Odd App ID

So, interesting thing.  We use a PA-500 for our enterprise guest networks.  We currently have a couple rules that go like this:

1.  Allow guest networks to use Skype / Skrype-Probe

2.  Block guest networks from using Risk 4 and 5 P2P  (this catches stu

...

mrsold by Not applicable
  • 3025 Views
  • 3 replies
  • 0 Likes

Resolved! JS/Trojan.redirector.cay false postive?

Hello,

Starting from what appears to be right after pattern update 683-936 was committed - we began receiving a very substantial amount of alerts from multiple internal "victims" for this Trojan.  I am still investigating this internally.  Has anyone

...

CRHC by L4 Transporter
  • 8622 Views
  • 9 replies
  • 0 Likes

Customize url report

Hi everyone,

     I use PAN-OS 3.1.6, I want to customize url report by filter some website don't show in my customize url report. I try use filter by url and operation is "!=" but it doesn't work. How I do it ?

  • 24224 Posts
  • 117 Subscriptions
Top Liked Authors
Labels