General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 406 Views
  • 0 replies
  • 2 Likes

Migration from Checkpoint R81.10 to PaloAlto

Hi Team,

We need to migrate a cluster Checkpoint firewall to PaloAlto. We do not have any Zones configured in Checkpoint, but Palo should have Zones as it is zone based firewalls. May i know what is the best way to migrate? Any KB or guide that can g

...

Ignite On Tour Stockholm, Sept 19th 2023

Wish to participate as an interested cyber security network technician but in private. How to do?

Reason is that I am still on aprroval my new work and do not want to affect my approval.

Best regards, Erik

Using Loopback interfaces for a site-to-site IPSEC VPN

Does anybody have experience configuring site-to-site IPSEC VPNs using loopback interfaces instead of phsical ones?  If you are going to respond with a sassy comment (e.g. Why are you doing that?  or That's dumb!) then please don't respond.  I have a

...

merrick by L1 Bithead
  • 20398 Views
  • 13 replies
  • 0 Likes

Resolved! Test command does not work

Hello, team.

I have a problem.
I have a couple of users created for read mode administration of the Palo Alto Firewall Cluster (they are local users).

When I try to test the Test Authentication Server Connectivity (I follow the documentation to the le

...

T2.png
T1.png
Matlu_NN by L2 Linker
  • 4483 Views
  • 15 replies
  • 0 Likes

list for PAN IPSEc Error Codes?

Hi Community,

 

for a problem with IPSEC Tunnels I recently reviewed some ikemgr logs.

Those included some Error Codes(for example error Code 19).

 

I was just wondering if there exists a list with error codes and the explanation for those codes?

I searche

...

unable to access Palo Alto Web GUI.

Hello,

 

After a recent update from 8.1.20 to 9.0.0, we are not able to access the Palo Alto web GUI (hmmm.. can't reach this page)

But we are able to ssh to the device though. We are updating the firmware to the latest version but now need to figure

...

Power supply unit for Paloalto PA-850

Hello everyone,

 

I have Palo alto PA-850 at my warehouse which needs the power supply unit replacement. My colleagues says it should be DPS-500WB-2 B model but a lot of suppliers says they have DPS-500WB-1 A and it's the legal replacement. But I cou

...

Oleg_a by L0 Member
  • 834 Views
  • 1 replies
  • 0 Likes

PA VM Firewall

Hi All,

I have issues configuring eth1/2 in the VM firewall. I have configured eth1/1 as internet facing interface.

eth1/2 should be the MPLS facing interface. When checked on Vcenter the NIC is showing teh Mgmt interface IP and not the eth1/2. Tried

...

Log System setting

I want to set up messages to be sent to email Log Settings - Config 
I want every user who connects to the admin to receive an email no matter where the WAB or CLI or IP source comes from.

@filter builder

(severity eq informational) and (description c

...

Shalev_0-1689570642938.png
Shalev by L1 Bithead
  • 1786 Views
  • 9 replies
  • 0 Likes

DHCP Interface Stuck

Hi All,

I have a situation where the Meraki sends error saying it cannot reach the internet which is connected to the PA and then to the Service provider's NTU. The NTU is providing DHCP connection to the PA's ethernet port.

No error message is seen

...

Pras by L4 Transporter
  • 1231 Views
  • 1 replies
  • 0 Likes

IP Wildcard mask for IPv6 adresses

Greetings! I am running a VM with PA-VM-KVM-11.0.0 and wanted to test the usage of "IP Wildcard Mask" addresses in Security Policy Rules.

 

The addresses I want to select look like

fd00:10:244:*:2000::/80

 

and "IP Wildcard mask" type for addresses s

...

frigault by L1 Bithead
  • 1539 Views
  • 1 replies
  • 0 Likes

Route to IPSec Tunnel

Hi All,

I need to add a route pointing to a Tunnel interface. As the peer has dynamic IP have created the IPsec tunnel with Dynamic IP Peer Identification as its Hostname.

 

To Add route in the VR as we do not have IP address if i just point it to th

...

Email Scheduler Not Working

Hi Team 

 

I am on panos 10.2.4 and having issues sending a test email via email scheduler via smtp.zoho.com.au

Email profile has been configured and I can receive test emails but from the actual email schedulers I get a failed to send an email messa

...

nevolex by L3 Networker
  • 2680 Views
  • 3 replies
  • 0 Likes

Global Protect MFA with Google Authenticator

Dear Team, 

 

Please help me understand can we configure TOTP Google Authenticator(Free) for Global Project VPN users 

we have configured Global Protect VPN with AD authentication and want to configure the above solution.

 

Thanks in Advance 

 

Regar

...

  • 23695 Posts
  • 110 Subscriptions
Top Solution Authors
Labels