General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4120 Views
  • 0 replies
  • 0 Likes

Traffic Between DCs after User Agent Install

I installed the PAN user agent on a customers core DC and we are now having some issues. The traffic between the DC with the user agent and the firewall is pretty minimal and everything is working correctly. However we are seeing a lot of additional traffic ( consistent 1Mbps+) between their core DC (where the agent is installed), and their edge...

Panorama

I have multiply firewalls but all the 3 firewalls holding different set of rules, in this case how panorama will help to manage centralzied.

dpgowe by Not applicable
  • 2046 Views
  • 1 replies
  • 0 Likes

VPN peer with dynamic IP

Hello,I tried to make a VPN between a Palo Alto (static IP) and a Netscreen 5 (dynamic IP).I succeeded when I declared Netscreen's IP as static, so phase I and phase II, proxies and so are correct.When I change peer address to dynamic, VPN doesn't work. I tried declaring peer id, local id, every combination, but no success.I always get this log...

nevot by Not applicable
  • 4527 Views
  • 3 replies
  • 0 Likes

Resolved! Regular Expression Fail

I keep getting the following error "is invalid. pattern must be at least 7 bytes"Example match: 378282246310005How I would normally match via regex: .*[3][47][0-9]{13}How I am interpreting Palo Alto wants me to write it: .*(3)[47].*([0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9][0-9])I have tried at least a dozen variations of rege...

rroberts by Not applicable
  • 5137 Views
  • 4 replies
  • 0 Likes

Resolved! Custom App don´t appear in Custom Reports

Hi,I make some custom applications, those app works fine and appears in ACC and logs. But when I make new custom report and filter for application, no my custom app appear. Any idea?Regards

COMIP by L2 Linker
  • 3435 Views
  • 3 replies
  • 0 Likes

Scheduled Log Export CSV File Size

I scheduled a log export and ended up with a ton of small (~30MB) CSV files on my ftp server. Is there any way to specify the size of each exported log file? I already tried setting the "Max Rows in CSV Export" (Device>Setup>Management) to the max value (1048576) but that did not appear to change the results of the scheduled log export jo...

PeteS by L1 Bithead
  • 7838 Views
  • 9 replies
  • 0 Likes

Resolved! Interface 'configured but down' after delete

I started setting up an additional interface, decided it wasn't necessary and deleted it (it's configuration, anyway).After (more than one) commit action, it still shows up in red with the status 'configured but down'I'm not aware of any problems resulting from this--it's more of a distraction-- but I don't understand why this would be happening...

sspivey by L1 Bithead
  • 10436 Views
  • 3 replies
  • 0 Likes

Resolved! Panorama NAS...

We are looking to add a new Vdisk to the Panorama and were wondering what others had experienced... We have already filled up the 10 GB default space.The document states that if the Vdisk is removed it will revert back to the internal 10GB.. What's the fail over/fault tolerence of the device? If the Vdisk looses connectivity will the Panorama...

kazjak by Not applicable
  • 4314 Views
  • 5 replies
  • 0 Likes

Resolved! Denying Internet Connection Sharing

Hi, I've recently discovered that if a user shares their network connection by setting up an AP on their machine (think Mac 'Sharing') then whatever device is then connected can get online (the deny and allow policies still apply as expected). For example, a connecting iPad gets an address 10.0.0.3/32 from the workstation AP. The workstaion has ...

Conde01 by L1 Bithead
  • 4053 Views
  • 3 replies
  • 0 Likes

Regular expression in Data Pattern

Hi all,my Palo don't accept this regex when i try to creta a data pattern: [^d][^2][^t]\.xxxxxx\.frcan anyone correct me if there is any mistake in this regexpThanks

nmarchal by Not applicable
  • 7787 Views
  • 13 replies
  • 0 Likes

Resolved! HA active/passive with single HA port ?

hi,i have two PA500 appliances am looking to configure them on HA mode , with my current setup i have utilized all 7 ports so one port left for me , as per the documents for HA ( A/A , A/P ) you need 3 or 2 ports to achieve the configuration... so is there a way to achieve HA ( A/P ) with single HA port ? because if not i have to re-setup the ap...

Client-VPN w. GlobalProtect and client certificates w/o

Hello everybody,we are running the latest PAN-OS 4.1.0 and Panorama in an evaluation environment and would like to deploy Client-VPN the following way:We do run our own CA in our Corporate network.We use our own PKI infrastructure and Aladdon eToken with client certificates on it for Client-VPN throgh MS ISA since years.Users do not know their M...

tkenning by L0 Member
  • 3054 Views
  • 1 replies
  • 0 Likes

Customized antispyware response page missing

We are running version 4.0.2 and it looks like the cusomized antispyware response/block page option is missing. According to the PDF guide it should be there. Also, the help page gives a 404 not found error when I click on it while in the custom response screen.Thanks.

  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels