General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4132 Views
  • 0 replies
  • 0 Likes

Resolved! PA2020 Proxy ID Limitations

Hi,I am configuring a VPN Tunnel between a PA2020 and a Cisco ASA. The PA is running version 3.1.5.The PA is obviously route based VPN's... The Cisco ASA uses policies or encryption domains/ACL's to define what traffic is allowed down the VPN.So in order to get this working we have used Proxy ID's to define the traffic that is allowed down the t...

harsh01 by Not applicable
  • 3102 Views
  • 2 replies
  • 0 Likes

ssl-vpn unable to login

Hello,I have a Problem with my PA-500 (4.0.2). I'm unable to see the Webserver Login Page for the SSL-VPN. I get the SSL Certificate Security Warning and then the Browser hungs up on loading (Waiting for IP-ADDRESS) and nothing happens.I already disabled the Clientcertificate, Changes the Server-Certificate and changed the Authentication Profile...

computop by L1 Bithead
  • 5688 Views
  • 6 replies
  • 0 Likes

Resolved! Disk Quotas

Does anyone know if it is possible to change the disk quotas in Panorama?

Exclude URL

Is there a way to exlude URLs from the log? In other words if there are websites, like our company website, that I don't want to see when I view the URL Filtering log, can I exclude the URL from being logged?Thanks.

Klein_it by Not applicable
  • 3737 Views
  • 2 replies
  • 0 Likes

Resolved! Link Aggregation

Does anyone know if the Palo Alto has or will have (in a future release) the abilty to aggregate WAN links?

tmallen by Not applicable
  • 4298 Views
  • 4 replies
  • 0 Likes

Resolved! Global protected user

Dear Friends!I have one pa2020 device. So i configure global protected feature. but configuration continue problem. rasmgr: No valid GlobalProtect gateway license! device: Warning: No valid GlobalProtect gateway license!Warning: No valid GlobalProtect portal license!Configuration committed successfullyThis one error message.Must I license buy Gl...

batmunkh by Not applicable
  • 3125 Views
  • 1 replies
  • 0 Likes

HA Active/Active with Floating IP issue (PAN4.0.2)

The configuration is HA Active/Active with the following: - “Session Owner Selection” set to primary-device; - Floating IP configured on several L3 interfaces, and on each interface the Active-Primary node has lower Floating IP priority (is the preferred node); - The Link Monitoring is disabled, however on each Floating IP group ‘Failover on ...

darkfibre by Not applicable
  • 2953 Views
  • 1 replies
  • 0 Likes

CREATE CUSTOM REPORT FOR UNKNOW USERS?

Hello,I want create a custom reports for identify all User there are not identified by the PALO-ALTOI can do that with the traffic log with the fitler : not (user.src neq '') ( I do a negate on user is present)I can see the unknow users in real time, in cli with : show user ip-user-mapping | match unknowbut with the custom report filter is not p...

alle by L3 Networker
  • 2414 Views
  • 1 replies
  • 0 Likes

Resolved! PAN-Agent - Domain on User-ID

How can I remove the Domain information from the User information?Domain/UserID to just UserID.I notice that I am getting this information from the PAN-Agent and the Terminal-Agent.Reason: I am also using LDAP Authentication for SSL-VPN/Admin which does not use the Domain information so I have to add the user account manually to to the Allow-Li...

blacksan by L1 Bithead
  • 4213 Views
  • 3 replies
  • 0 Likes

Resolved! Custom Pattern and Signatures without hex

I am wondering not beeing able to declare hexadecimal data in custom pattern/signatures. Perhaps i am in mistake, but i found nowhere any complete explanation of "building regex with Palo Alto systems".For instance, i did not found the solution to declare "<" in a pattern regex ( "<" or "\<" don't work) or "Beginning of the file" (perha...

mhuels by L3 Networker
  • 4129 Views
  • 2 replies
  • 0 Likes

Resolved! Where do I find the OSPF timer set up?

Can anyone show me where I can find the information on OSPF routing Hello and Dead Timer set up. I set that up once before, can now I can't remember how to get back to that area.Thanks,

bnguyen by Not applicable
  • 4140 Views
  • 1 replies
  • 0 Likes

Replace option via CLI - can you do it?

Hi.I have a situation on my PAN where I need to replace all instances of a given IP address (it's a "Next Hop" address in the virtual router) with a different IP address.Through the GUI, I can only delete and re-enter all the access routes - time consuming, given there are about 35 of them concernedf with this change.Is there a command from the ...

dagibbs by L4 Transporter
  • 6728 Views
  • 5 replies
  • 0 Likes

BGP HA Setup (Active/Passive) Passive Device Showing Active Peers

Hello,Wondering if anyone else is having this issue. We have 2 x PA-4020s in an Active/Passive setup running BGP with several Cisco routers that connect to our MPLS network. About a week ago we had a failover occur due to ethernet1/3 bouncing. We have remained on our secondary device since then until we can figure out what is going on with the p...

  • 24337 Posts
  • 124 Subscriptions
Labels