General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4238 Views
  • 0 replies
  • 0 Likes

Pan-agent how to set an agent as primary

Hi,I installed about pan 12 agents to retrieve a Domain and they all communicate with a PAN.The PAN OS is 3.1.5As I saw in another post, only one agent send information (IP/user) to the PAN, it is the primary agent.My problem: this agent does not send all the information. When the primary agent was the one on the main AD server it was working fi...

novidys by L1 Bithead
  • 3783 Views
  • 3 replies
  • 0 Likes

PAN 3.1.6 use of proxy for updates

Hello all,After upgrading a PAN Device to PANOS 3.1.6, we see a strange behaviour, when the mananement plane is using a proxy for the updates (as defined in the Device->Setup->Edit).We have defined a proxy over there, for example 10.0.0.4 and port 8080, and then we changed the proxy to 10.0.0.18 and port 8080.After doing some checks with t...

ggoudr by L2 Linker
  • 4780 Views
  • 4 replies
  • 0 Likes

Get Incomplete on Palo Alto after NAT on CheckPoint

Hi everyone.I need some help.I I encoutered a problem with incomplete session during configuring a simple (as I thought) roule.I have host inside my network and I want to configure the access from the internet. My configuration is: the first firewall is CheckPoint andthe second is Palo Alto.I made a static NAT on it and proper rules to access to...

OCS or Lync support

Hi all,did anyone have any experience or customer with PAN and OCS or new MS Lync 2010?Does PAN have signature to recognize Lync traffic?I already know that ms-ocs-video, audio, xfer are identified, but what abount Lync?Thanks in advance

Resolved! userid-agent vs pan-agent - what's the difference?

Hi.In trying to diagnose a recent issue with identifying users on my SSL VPN, I deleted the user identification configuration and re-adde it.I noticed that there are now two types in a drop down box when adding a userid agent - userid-agent and pan-agent.Can anyone tell me what the difference is? And which one should I be using to talk to the AD...

dagibbs by L4 Transporter
  • 4076 Views
  • 2 replies
  • 0 Likes

SSL VPN Login history

Is there any way to increase the retention of successfull logins to SSL? I would like to retain at least 2 months if possible.Thanks,D

Understanding Zone Protection

Hello all,I recently configured Zone Protection for the external interface (untrust) on a PAN-2020 3.1.6 in a vwire setup. Initially we have configured ZoneProtection to "Alert" only.We have set the triggers for "Activate" and "Maximum" to a figure which we will never reach (screenshot ZP-1.jpg) and bound this ZoneProtection Profile to the untr...

gafrol by L4 Transporter
  • 18746 Views
  • 6 replies
  • 1 Likes

Unable to Ping to Layer 3 interface

Hi , I have a Palo Alto 4020 . I have configured one of the interfaces as Layer 3 and also allowed Ping and telent on this interface . The IP given to this Layer 3 interface is 192.168.90.17 and its default gateway is the VLAN interface 192.168.90.1. Even when I connect a Laptop directly to the interface by giving the Laptop an IP of 192.168.90....

TFAUH by L0 Member
  • 10317 Views
  • 8 replies
  • 0 Likes

Application number discrepancy

I noticed a discrepancy in the number of Applications shown under Objects -> Applications. At the top of the page it shows 1163 matching applications but, at the bottom right of the page it shows Displaying 1 - 40 of 1204. Could you please confirm which number is correct the 1163 or 1204?Thank you...

jwolach by L4 Transporter
  • 2287 Views
  • 1 replies
  • 0 Likes

Ident Agent error

Hi.I've noticed the following error in my PA logs this morning12/07 09:30:54 general informational general Pan-Agent read log error: 10.1.30.142 716 time(s) However, I've checked the DC the agent is running on and it doesn't appear to have any errors - it's enumerating users to IP addresses fine and the agent itself reports "No Errors" in the s...

dagibbs by L4 Transporter
  • 2789 Views
  • 1 replies
  • 0 Likes

Windows Remote Desktop Application Slow When Access Through PAN Firewall

Hi Guys,I am experience some issue with the PA-500. I am having some slowness issue when users connect from remote site to HQ local server via remote desktop ( ms-rdp ) application and sometimes unable to connect or disconnected.Policy rules are : WAN - LAN Source any Destination 10.0.0.10 and 10.0.0.11 (server ip) any any profiles: noneThat ...

jeffhooi by Not applicable
  • 6766 Views
  • 2 replies
  • 0 Likes
  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels