General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 239 Views
  • 0 replies
  • 0 Likes

Connect same VLAN to multiple V-SYS

Hi All,

 

We have a PA-5220 firewall cluster which has running multiple V-SYS itself. The firewall is connected to the up stream router thru a port channel. On the up-stream router VLAN 10 is allocated to the WAN-IP range. I need to extend that VLAN

...

PBF not working with DNAT policy for server

Dear Team,

 

We have 5 ISPs and we have configured PBF for a group of IPs/networks.

 

We observed while routing the server from X ISP to Y ISP, the server which is published on X ISP becomes inaccessible.

 

Request you please help to resolve the issu

...

VINAYAKJ by L0 Member
  • 729 Views
  • 1 replies
  • 0 Likes

Resolved! USER-ID mapping by firewall

Hi All,

 

Consider there is an user (xyz@example.com) is accessing some network for which communication is allowed in firewall based on USER-ID rules.

 

If the User(xyz@example.com) at the same times access the allowed sites by using two different IP

...

Sujanya by L3 Networker
  • 1115 Views
  • 1 replies
  • 0 Likes

SNMP Counter issue

Hello everyone

I am having a problem with SNMP requests on my palo-alto.

My issue is the following

I don't see any traffic on the physical interfaces of the palo alto, the traffic remains at 0

I can clearly see the traffic on the virtual interface (V

...

LCutman by L1 Bithead
  • 861 Views
  • 1 replies
  • 0 Likes

Panorama config export fail. Host key verification fails

When I try and configure a scheduled config export the connection fails.  I get a message the RSA host key differs and asked to confirm adding the key.  This is a loop and always asks to add the key.  If I try to remove all the known host keys the co

...

Rawilson by L0 Member
  • 1546 Views
  • 1 replies
  • 1 Likes

comments in cli

Hi

 

I have a text file with PANOS command line arguments (set) what character defines a comment line ?

 

is there one ?

Alex_Samad by L4 Transporter
  • 11887 Views
  • 11 replies
  • 1 Likes

Resolved! PA is connected to a router

Hi PA(non-management interface) is connected to a router via a cable .  What is minimus condition for the two device to ping each other?

1. ip address in interface are in same subnet,

2.  interface associated with management profile to allow ping 

3.

...

Resolved! CLI configuration of adding interface to virtual router

Hi,

When add a interface into virtual router using cli, do I need to copied all the interfaces in the virtual router currently, then add this new interface into the list? 

For example, current default virtual router has two interface ethernet1/1 and

...

nowayout by L1 Bithead
  • 2520 Views
  • 2 replies
  • 0 Likes

Encrypted-DNS False Positive Heads Up

Presently 20230406.20033 and earlier updates are presenting a large number of false positive categorizations for encrypted-dns. This includes several domains from Bitwarden, YouTube, Google, Microsoft, Spotify, and many many others. If you have encry

...

BPry by Cyber Elite
  • 3176 Views
  • 6 replies
  • 3 Likes

Resolved! L2 Over L3 with VXLAN protocol

Hello, 

 

Is it possible to configure a VXLAN tunnel on a Palo Alto 3220 (running PANOS 10.2.3)? I.e. is L2 over L3 tunneling using VXLAN protocol possible? If so, is there an example configuration you can point me to?

 

Thanks!

brenna by L0 Member
  • 4594 Views
  • 2 replies
  • 0 Likes

blocking apps on google chromecast

Hello,

 

Looking to block apps on a new Google Chromecast all apps would be great but haven't been able to block AppleTV, HBOMax and ESPN. I've put appletvplus and hbo into our blocked apps rule but they still open and able to be accessed.

 

Any one

...

mlaporte by L1 Bithead
  • 1767 Views
  • 2 replies
  • 0 Likes

Re: Welcome to LIVEcommunity! Start Here.

Olá @Marcos1991 

 

Algo que pode testar é a liberação de portas de VPN udp, já precisei em algum momento utilizar-se disto.

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/firewall-administration/reference-port-number-usage/ports-used-for-ips

...

  • 23624 Posts
  • 107 Subscriptions
Labels