General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1944 Views
  • 0 replies
  • 0 Likes

Resolved! Link Aggregation

Does anyone know if the Palo Alto has or will have (in a future release) the abilty to aggregate WAN links?

tmallen by Not applicable
  • 3922 Views
  • 4 replies
  • 0 Likes

Resolved! Global protected user

Dear Friends!

I have one pa2020 device. So i configure global protected feature. but configuration continue problem.

rasmgr: No valid GlobalProtect gateway license! device: Warning: No valid GlobalProtect gateway license!Warning: No valid GlobalProtec

...

batmunkh by Not applicable
  • 2907 Views
  • 1 replies
  • 0 Likes

HA Active/Active with Floating IP issue (PAN4.0.2)

The configuration is HA Active/Active with the following:
- “Session Owner Selection” set to primary-device;
- Floating IP configured on several L3 interfaces, and on each interface the Active-Primary node has lower Floating IP priority (is the pre

...

darkfibre by Not applicable
  • 2737 Views
  • 1 replies
  • 0 Likes

CREATE CUSTOM REPORT FOR UNKNOW USERS?

Hello,

I want create a custom reports for identify all User there are not identified by the PALO-ALTO

I can do that with the traffic log with the fitler : not (user.src neq '') ( I do a negate on user is present)

I can see the unknow users in real time,

...

alle by L3 Networker
  • 2226 Views
  • 1 replies
  • 0 Likes

Resolved! PAN-Agent - Domain on User-ID

How can I remove the Domain information from the User information?

Domain/UserID to just UserID.

I notice that I am getting this information from the PAN-Agent and the Terminal-Agent.

Reason:  I am also using LDAP Authentication for SSL-VPN/Admin which

...

blacksan by L1 Bithead
  • 3928 Views
  • 3 replies
  • 0 Likes

Resolved! Custom Pattern and Signatures without hex

I am wondering not beeing able to declare hexadecimal data in custom pattern/signatures. Perhaps i am in mistake, but i found nowhere any complete explanation of "building regex with Palo Alto systems".

For instance, i did not found the solution to de

...

mhuels by L3 Networker
  • 3819 Views
  • 2 replies
  • 0 Likes

Resolved! Where do I find the OSPF timer set up?

Can anyone show me where I can find the information on OSPF routing Hello and Dead Timer set up.  I set that up once before, can now I can't remember how to get back to that area.

Thanks,

bnguyen by Not applicable
  • 3813 Views
  • 1 replies
  • 0 Likes

Replace option via CLI - can you do it?

Hi.

I have a situation on my PAN where I need to replace all instances of a given IP address (it's a "Next Hop" address in the virtual router) with a different IP address.

Through the GUI, I can only delete and re-enter all the access routes - time con

...

dagibbs by L4 Transporter
  • 6120 Views
  • 5 replies
  • 0 Likes

HTTP performance issue

Hi,

our PAN 4020 device is deployed to enforce visibility and control for all user-generated traffic (from LAN to Internet and from Internet to DMZ).

This is the scenario:

- 2 fw, performing layer3 and NAT

- 2 IPS, performing IPS and Bandwidth Management

...

Resolved! Passive FTP

Hi,

Is there any trick to allow passive FTP inbound?

I have set a security rule to allow APPLICATION-FTP inbound, and a NAT rule to let Port 21 inbound. Works fine for ACTIVE, but PASSIVE fails at the LIST command.

Help would be appreciated.

Thanks.

Dean

andyyps by Not applicable
  • 17785 Views
  • 15 replies
  • 0 Likes
  • 24197 Posts
  • 117 Subscriptions
Top Liked Authors
Labels