General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! VPN Phase 1 Not Synchronized between HA pair

Hello guys, Sorry if this topic has been already discussed before but I could not find an answer. I would like to know why phase 1 is not synchronized between HA pair. Is there a particular reason ? Thanks

seag by L1 Bithead
  • 3647 Views
  • 3 replies
  • 1 Likes

Resolved! Palo Alto SNMP Item meaning

Hello, i'm doing snmp polling to firewalls and need to know the throughput for the interfaces. Am i right to think that Interface out counters (ifOutOctets.n, 1.3.6.1.2.1.2.2.1.16.n) and Interface In Counters (IfInOctets.n, 1.3.6.1.2.2.2.2.1.10.n) are the items that i'm looking for? Or there is any other that i might have overlooked? I also need...

DanielVe by L1 Bithead
  • 5732 Views
  • 7 replies
  • 0 Likes

Firewall can't be added to VM-PANORAMA-25: Device limit reached

We have a new Panorama VM-25 but we can't add any devices to it. We get 'maximum device limit reached' when we try to add the first FW. We have valid licenses so not sure what the problem is. I have tried deleting that device management license and fetching new ones but it just brings back the exact same one. Does anyone know what the pro...

drewdown_0-1705938343133.png
drewdown_1-1705938431257.png
drewdown by L4 Transporter
  • 1766 Views
  • 2 replies
  • 0 Likes

Logging - 5450

Any tips/places to look into when not seeing logs locally on the firewall? new install, PAN OS 10.2.7

clewis1 by L3 Networker
  • 2994 Views
  • 6 replies
  • 0 Likes

PA200 Android IKEv2/IPSEC PSK

Hi everyone, I received an old Palo Alto PA200 firewall from a friend who works in networking, and I decided to set it up in my home lab to explore its interface and features. If I like how it performs, especially the monitoring capabilities, I might suggest purchasing it for the company where I work. Currently, I'm trying to establish an IPsec ...

Kublach by L0 Member
  • 2256 Views
  • 1 replies
  • 0 Likes

Resolved! How to view administrative distance?

Hi everyone, How would I see administrative distance of the routes in the routing table? they seem to not be visible in the gui (more runtime stats) or via cli (show routing routes). is there a special command or special area via gui I can see this information??

VK9H13 by L2 Linker
  • 6346 Views
  • 5 replies
  • 0 Likes

Resolved! Move firewall to new Panorama

Hi All, We currently have 2 Panoramas (virtual) managing different firewalls.. We'd like to move all firewalls to 1 pano, so we can retire the other one. What's the best/safest way to accomplish that? Is there a way to avoid having duplicate objects while migrating or would it be a cleanup effort after the fact. It's a mix of standalone fi...

CLI Rename Command Syntax - Rename GlobalProtect Gateway

Totally new to Palo Alto here. I'm looking to rename an existing GlobalProtect gateway on our PA-450. I have found some posts indicating that this can be done from the CLI of the firewall by using the "rename" command from CLI to update the "GATEWAY" name and the "GATEWAY-N" name on the firewall. I can see these entries in the config after e...

Resolved! Decrypt Gmail messages

Hello All, Newby question here, is it possible to decrypt Gmail messages and actually see what a client sent via gmail? Some times there are investigations where we need to find out if an email was sent out from someone internally. We only receive the email that was shared or spammed to corporate users. If this is possible can you please sh...

palmanza by L0 Member
  • 3573 Views
  • 1 replies
  • 0 Likes

Nessus scan of FW2 failed - credentials were no provided for detected PAN-OS WebUI service

When performing a NESSUS scan of FW1, errors return: Remote host was not identified as a known device or operating system and the execution of "uname -a" failed. NESSUS returned the following error: Enter old password: This NESSUS scan works on three other FWs successfully Plugin: ssh_get_info.nasl (#12634) Plugin: no_local_checks_credenti...

Resolved! Query for routing table

Hello, everyone. One query. In Palo Alto Firewalls, what is the correct command in the CLI, to "validate" if I have or don't have a route, to reach a particular destination? The correct command is "show routing route" or "show routing fib" ??? What is the command that can help me to know if my Firewall has a route to a particular destination? Th...

Matlu_NN by L2 Linker
  • 17985 Views
  • 16 replies
  • 0 Likes
  • 24428 Posts
  • 125 Subscriptions
Top Solution Authors
Labels