General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4105 Views
  • 0 replies
  • 0 Likes

Resolved! Virtual Router Best Practice - Guest Network

Hi, We don't have dual ISP but we do have STS VPN that connects our offices to our Cloud Infrastructure. At the moment all the interfaces share the same virtual router. So assuming the traffic from source to destination was allowed in a security policy then it will be able to route to the remote subnets via the STS VPN interface. We have ...

jbusby by L1 Bithead
  • 2489 Views
  • 1 replies
  • 0 Likes

WinRM-HTTP fails with the error 401

Hello, I'd like to request some advice on trying to shift away from WMI to WinRM-HTTP/S based User-ID. I followed the set-up guide by Palo and User-ID server monitoring is able to connect to the domain controller over WinRM-HTTP, but only every hour. If I set session monitoring to something less than 3600 seconds, each attempt by the user-id se...

Megrretz by L1 Bithead
  • 29584 Views
  • 9 replies
  • 0 Likes

Reliable metrics to conclude an asset's defended status in Cloud Discovery

The "defended" status, attached to each Cloud Discovery discovered asset, is not reflecting the asset's actual defended status. Across registry, serverless, hosts, etc, Prisma Cloud Discovery uses a loose definition to conclude the defended status of assets. For instance: Registry scans -> Looks at the registry settings, does it have a s...

user-id WinRM-HTTP connection refused

hiafter configuration of agentless user-id using Kerberos with WinRM-HTTP (was hard to get it working needed pa support for it)i encounter this issuei got 2 DC in my environment DCA and DCBWhen DCA is restarted i get Connection refused on both DCA and DCB in server monitoring i get error connection failed, HTTP code 100, Timeout was reached for ...

VM Setup on new laptop

Hell everyone, I'm facing issue regarding setup of VM on my new laptopn (Lenovo). Can anyone guide me how can setup it?

Tim9990 by L1 Bithead
  • 1177 Views
  • 1 replies
  • 0 Likes

TCP Retransmission & RST

We have a digital application on Android and IOS but when user is trying to access from IOS platform and access the application. During application browsing user is unable to access certain paths of application. And at that time we check on our Palo Alto we get continuous retransmissions on packet captures. And it is happening when accessing a...

muhammaduzair_0-1704136560202.png

Firewall unstable

Hi Everyone! I have this weird scenario always happening. One time my firewall suddenly cannot access go outbound the net using data interfaces and then I checked my config 5x but all are good. So I rebooted the firewall just to see if it was a bug. And it worked! So I left it running for a couple of days and then the same scenario happened a...

10.1.3 - PAN-OS Certificate Expiration on Dec 31 2023

Hello All, I checked my client's firewall, they are using 10.1.3 version. Scenario 1 : Data distribution, based on the Device -> Monitor -> Date Redistribution -> Agents page it is blank and not configured. Scenario 2 : The firewall is placed at the DMZ between the Control network and the Enterprise network, i checked Objects -> UR...

KJTeoh by L0 Member
  • 1772 Views
  • 1 replies
  • 0 Likes

Why am I seeing not seeing the dropped packets in my traffic feed?

The way my firewall is configured, the wireless traffic gets routed to the internal traffic through it. After connecting my laptop to the wireless on our network, I am unable to reach a software that was recently implemented for some reason. I was tracing down what could've been the issue for hours. I logged into the firewall and went straight t...

Traffic not in logs but in Packet Capture

I'm having issues with my garage door opener thru my PA 220 FW, v9.1.6, with the latest dynamic updates.It uses DNS and TCP 8883 to communicate to the MyQ servers. In Monitor>Logs>Traffic, I can see DNS traffic from the opener to 8.8.8.8 with return bytes, but no other traffic. In Session Browser, I see the 8883 traffic but hitting the Int...

Resolved! logging on intra and interzone

Hello,I just turned on logging on my intra and inter zone security rules and noticed that in the security logs a few external ip addresses from zone untrust to zone untrust, with the source of a public ip being allowed, session end reason time out.How can something be allowed from zone untrust to untrust, that doesnt make sense to me?the same pu...

roma by L2 Linker
  • 5129 Views
  • 4 replies
  • 0 Likes

Some webs not working

Hi, We have a PA-3050 with PanOS 8.0.5. We cant access to these webs https://www.metromadrid.es and https://www.ing.esWe receive a timeout and we see a RST from Palo Alto to web server.We had this problem in 8.0.4 and we upgraded to 8.0.5 but the problem persists. This issue breaks my mind, can someone give me any idea???

Captura.JPG
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels