General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.


SAML for direct login on many firewalls

I got SAML working fine with Okta for Panorama.  Very nice.  Next, I have "many" firewalls which are managed by Panorama, and I find myself directly logging in to them frequently enough that it would be nice to have SAML for that too.  (Context switc


Traffic hits on the ruler but does not show on the monitor

I have a problem in paloalto and is that I see that a particular rule increases hits but does not show the traffic in the logs, however, everything is configured to see it, if I see, the start and end of sessions but in the Fortigate in front o


Alpalo by L4 Transporter
  • 1 replies

Resolved! Looking for some advice on Licenses

Hello All,

this is just a question to see the best approach, bear in mind this is not a tech question. OK in advance apologies for the next line.

Our company is a gold partner for Cisco. However, we also support Palo Alto. I am a consultant for PA an


Shadow by L2 Linker
  • 2 replies

Resolved! Dataplane issue



i have 2 Palo Alto in HA Mode Active/Passive and yesterday the Active when down and i lost all the LACPs ,then i start to troubleshooting to see the cause and i found this

could you tell me if is this bug issue or interface issue please ?




Resolved! Combined source & destination NAT in one rule

Can you perform source AND destination address translation on a single packet? I know NAT rule processing is first rule match so more specifically, can I have a single NAT rule that defines a source and destination translation?

plago by Not applicable
  • 6 replies

Firewall rules for IPv6 targets

We are trying to implement IPv6 in our network, and as part of this deployment all our network resources should run on dual-stack (IPv4 & IPv6). Address objects Types in our firewall policy rules have been written based on IP (IP Netmask and IP Range


Dereje by L1 Bithead
  • 4 replies

Radius authentication not working

We have configured Radius on our VM Palo but its not working. Provided screenshots of configuration we have on the FW and output of test command. Routing is defiantly in place as we can ping Radius server, however no traffic on 1812 reaching PacketFe


URL Filtering log with action allow

Hi Folks,

It seems my whole life is a lie... Apparently PAN FW will generate URL log for category with action set to allow.


Yep, and the funnier thing is that you don't even need URL filtering profile applied on the rule. Someone may say I am crazy



Resolved! Global protect warning message upon commit

Hi All,


A client recently updated to PAN OS 10.1.2 and is now receiving the below warning upon commit. 


2021-09-19 12:18:46.350 +1000 client sslvpn reported warning: Portal config 'GP_VPN': Authentication Override and Config Seletcion Criteria -> Dev


Ben-Price by L4 Transporter
  • 3 replies
  • 24130 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors