General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Network connection unreachable on MAC OS newer version 15.3.2 o higher

Hi All, PAN-OS version: 11.1.10-h1 GlobalProtect Agent version: 6.3.3-711 We experiencing on the all MAC OS with The connection cannot be established and the following error message is displayed:“The network connection is unreachable or the portal is unresponsive. Check the network connection and reconnect.” We able to resolve for the olde...

Question on PA-440 Failover

Question regarding PA-440 and failover. How can I setup a failover in a PA-440 between two physical ports on that PA-440 firewall. For example: If Eth1/7 was connected to a cradlepoint and port 8 was a ipsec tunnel. What is the proper way to config pa-440 to failover from cradlepoint to another interface going over ipsec tunnel? Can the fi...

Create Custom Report for Unused Rules

HiI am struggling a bit here. I've been tasked to set up various reports on palo firewall. One of them is to create a custom report displaying all unused rules. I've tried many things. I followed this link: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClcgCACwhich basically creates a report of used rules. I need exac...

Resolved! License Forms

Hello Team, I'm working with a customer for whom we purchased a Support Only license, and now we would like to start working on their environment. However, we want to activate the license under their CSP account. I am aware that this is not possible, but according to the case we created, I understand that we can re‑book the entity to the custome...

Resolved! New periodic alert: Configuration size 19MB is above 80% of the maximum recommended configuration size 23MB for the platform.

Dear all, since a couple of days I'm getting alerts like: Configuration size 19MB is above 80% of the maximum recommended configuration size 23MB for the platform. Please consider removing unused configuration I removed all old auto saved configs after upgrades, and the config size looks ok:> show management-server last-committed config-s...

Support with PA-440 Software

Dear all, I have a pair of HA PA-440 with the software version of 11.2.7-h4, now I want to install the version 11.2.10-h2 to remediate CVE-(High Severity Vulnerability in PAN-OS) and (Customer Advisory on Device Certificate Renewal for NGFW Devices in Active-Passive High Availability (HA) with Service Route) Now I want to install software ve...

PAN OS version 11.1.13-h1 is remediate or not?

Dear all, I have this questions where I want to make sure first before doing an upgrade on my PA-820? Recently I have gone through the customer advisory of the following: (Customer Advisory on Device Certificate Renewal for NGFW Devices in Active-Passive High Availability (HA) with Service Route) and the CVE of the following (CVE-2026-0227 P...

Hotspot Shield VPN still works even though traffic logs show deny – Palo Alto Firewall

Dear Team , I’m facing an issue where Hotspot Shield VPN application is not being blocked, even though the Traffic Logs clearly show deny actions, Hotspot Shield VPN still successfully connect, and end users can browse the internet through the VPN. applications like ssl, web-browsing, unknown-tcp, or unknown-udp ipsec .. all are blocked. T...

Resolved! PAN-OS 11.1.13 Predefined reports displaying IPv4 addresses in IPv6 format

We have been experiencing an intermittent problem with our nightly predefined reports displaying IPv4 addresses in IPv6 format.An IPv4 address like 192.168.1.1 is being displayed as an IPv6 address like ::0101:a8c0:ffff:0 We are currently running PAN-OS 11.1.13 but we have seen this same behavior under 11.1.12. Behavior like this apparently ha...

Superreader User Privilege Not Available on WF-500 Appliance

When configuring user privilege on WF-500 appliance, I notice there is no superreader user privilege. But, when I checked from WF-500 appliance configuration documentation, there is superreader user privilege. I cannot find a similar issues where superreader user privilege is not available on WF-500 appliance.Below is the corresponding documenta...

i.rifai by L0 Member
  • 1483 Views
  • 1 replies
  • 0 Likes

Hardware warenties

do I check hardware warrenty status? I have a list of Serial number for Hardware and want to check when the current warrenties expire.

Resolved! Escalation process for Customer's with Premium Partner Support

Folks, As I had mentioned in a prior technical discussion, this is the first time I am working with a 3rd party Partner for support of mission critical equipment. In my specific case Ingram Micro is my direct support contact for my Palo Alto firewall. I have identified a bug and it continues to be of issue for us. It exists on the Preferr...

  • 24410 Posts
  • 125 Subscriptions
Top Solution Authors
Labels