General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

Resolved! Cannot ping L3 interface except mgmt?

Hi all,I have a classic setup... mgmt port, one outside, one DMZ and one inside L3 ports, NAT policy defined and a bunch of security rules.Outside, Inside and DMZ ports all have their IP addresses defined, but I cannot ping them. Not even inside port from inside network. Any ideas?

Active Active HA on PAN 4.x

PAN 4.x is supporting Active-Active High availability.Clearly, most firewalls also support Active-Active HA but, they need Layer-4 switch to get full performance.In other words, most of firewalls also support Active-Active, but it is in name only in the real network world without Layer-4 switch.How about Paloalto on Active-Active? PAN also need...

willstech by L3 Networker
  • 5532 Views
  • 6 replies
  • 0 Likes

L3 install issue - two internet lines of L3 mode installation on same networks

Hi all.One of demo customer has two internet lines from same ISP and same network. PA appliance runs on V-wire mode behind L3 office router at now.But, customer wants to change network like attached file therefore, PA should be changed from Vwire to L3 router mode.(Refer to attached network diagram. Ultimately, Router will be changed to PA appli...

willstech by L3 Networker
  • 3949 Views
  • 3 replies
  • 0 Likes

SSL VPN client ports

We have a few officers that connect from a remote location with a firewall of its own. They are all using the SSL VPN client to connect back to home. I can pull up the https://external-ip and login, but when the connection starts up i get a Disconnected; unable to connect to remote client. I need to know what ports the SSL VPN client uses to c...

Does Netconnect work with Windows 7 Service Pack 1?

Netconnect version 1.2.0-402 connecting to PANOS 4.0.1 running on Windows 7 SP1 (32bit) have been successfully tested using both IPSec and SSL protocols. We received some reports from clients using other VPN technologies that SP1 broke their client VPN connections.

jdgregg by Not applicable
  • 5201 Views
  • 2 replies
  • 0 Likes

URL Filtering Bug filter bypassed

HI,I am having issues with the URL filters for example if i have a blocked porn site www.xxx.com and i enter www.xxx.com.(dot) it bypasses the filter and is allowed through. I am running version 3.1.6

Setting up Orion NPM to monitor PA-2050 via SNMP

Hi,I'm new to setting up SNMP and need help.Our Network Engineers need to setup their Orion NPM to monitor our 3 Palo Alto 2050's via SNMP.They basically only need to monitor CPU, Memory, and Link States of the 3 interfaces hooked up for each of the 3 Palo Alto 2050's we have setup.Can someone walk me through this as far as how to setup communit...

ikinnexi by Not applicable
  • 4630 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama 3.1 to 4.0 migration

Hi,I would like to know if Panorama 4.0 is able to manage PanOS 3.1.x firewall. If yes is there any restrictions or known caveats ?In fact, we are planning to purchase Firewall 5050 which support only PANOS 4.0, and beside this we have some others 40xx series,that we can't migrate to 4.0 fast enough. So if panorama is able to manage 3.1 and 4.0 ...

bdaussin by L0 Member
  • 3391 Views
  • 4 replies
  • 0 Likes

No IPSec-Tunnels after Upgrade from 3.1.7 to 4.01

Hello,we run 8 PA-500s in 8 Branches. After upgrading them from 3.1.7 to 4.0.1 not all IPSec-Tunnels become active.The Tunnels to the branches with the WAN-Interface connected to SDSL with PPPoE (automatic IP/Netmask/Gateway) stayed inactive, even after more than 12h.The WAN-Interface itself was online, pings to a external addresses were answere...

Multiple NAT or UTurn NAT rules

We are hoping that someone can suggest a simpler way to resolve the issue of allowing internal hosts (in the Trust zone) to access servers sitting on the Trust zone via their external IP address (what PAN calls a UTurn or Hairpin rule). We have nearly 70 Static IP NAT rules, most of which are bidirectional, and are not looking forward to defini...

synapse by L0 Member
  • 3900 Views
  • 2 replies
  • 0 Likes

Resolved! Opening file download for specific URLs

I have recently deployed PAN 2050 in my organization. We are enabled file blocking for selected file types e.g. (EXE, BAT, CAB, ZIP, ISO, RAR etc.) in both the direction. But as per management decision I have to allow download access from Microsoft URL’s. As you are aware Microsoft is having hundreds of IP’s so I can’t achieve this using IP addr...

u6402 by Not applicable
  • 2694 Views
  • 1 replies
  • 0 Likes

DOCX, XLSX, PPTX, ASPX files to be allowed when zip is blocked

I have recently deployed PAN 2050 in my organization. We are enabled file blocking for selected file types e.g. (EXE, BAT, CAB, ZIP, ISO, RAR etc.) in both the direction. Currently we are facing some issues with DOCX, XLSX, PPTX, ASPX file types. Even though this file types are allowed PAN is detecting these files as ZIP files and it is getting ...

u6402 by Not applicable
  • 4745 Views
  • 1 replies
  • 0 Likes

PAN-2020 is taking 45 Minutes to 1 Hour for committing the changes

I have recently deployed PAN 2020 in my organization. Initially it was working fine without any major issues. But recently it started behave strangely. PAN is taking 45 Minutes to 1 Hour for committing the changes. Sometimes it may even get timeout as well. Restarting PAN device is resolving issue temporarily. Did anyone face this issue before? ...

u6402 by Not applicable
  • 2558 Views
  • 2 replies
  • 0 Likes

Resolved! PANOS 4.0.1 - Color Scheme Hard to Read

Does anyone else find that the color scheming of PANOS 4.0.1 extremely hard to read?Since upgrading recently I've had multiple complaints specifically with reading of the 'greyed-out' areas such as disabled rules, the soft contrasting and color choices are terrible to read.Is there any way to change this to something with more contrast?

micit by L1 Bithead
  • 2635 Views
  • 1 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels