General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 380 Views
  • 0 replies
  • 0 Likes

Resolved! unknown command during SSH script

by testing a ssh skript i get an "unknown command" error from the CLI

 

user@host:~/> cat reset.sh ssh -t -t fw.domain.de << EOF set cli pager off show user ip-user-mapping all type CP debug user-id reset captive-portal ip-address 1.2.3.4 quit EOF ...

mhuels by L3 Networker
  • 1761 Views
  • 1 replies
  • 0 Likes

Resolved! Running Security LifeCycle Review SLR for a NGFW

Hi All,

I have access to the PA HUB and want to run a SLR review for a client's NGFW (i have a statsdump file)

however it is asking me to activate this service and requires a cortex data lake instance of which i don't have one, is this still doable?

...

Ants by L1 Bithead
  • 2079 Views
  • 2 replies
  • 0 Likes

Certificates not appearing in XML running configuration

Dear colleagues,

 

I am having trouble with the custom Nagios plugin check_paloalto, specifically with the "certificates" check.

The rest of the checks are working fine.

 

Basically, the "certificates" check leverages the API calls and parse the XML

...

GGarolla by L1 Bithead
  • 1319 Views
  • 2 replies
  • 0 Likes

Resolved! Best practice for Active/Passive HA and OSPF

I configured Active/Passive HA in an environment where the firewalls connect to a core switch. There is an OSPF adjacency exists between the active Palo and the core switch. I'm curious what the best practice is for OSPF and HA. When tweaking the OSP

...

inssider by L1 Bithead
  • 6073 Views
  • 2 replies
  • 0 Likes

Resolved! IKEv2 tunnel does not restore after HA failover

I have an IKEv2 IPSec tunnel that does not automatically restore after an HA failover. Once the IKE-SA and IPSec-SA is manually cleared, the tunnel eventually restores. I have other IKEv2 tunnels that restore after several minutes with no interventio

...

Day 1 Configuration of PAN-410 model firewall

I created day 1 config file for my PA-410 model firewall and loaded the configuration. But while commiting Got below error:

"email-scheduler -> Possible Compromise -> report-group 'Possible Compromise' is not a valid reference
email-scheduler -> Possi

...

Sujanya by L3 Networker
  • 2856 Views
  • 5 replies
  • 0 Likes

Resolved! Qualys scanner blocked

Hi,

 

We recently deployed Palo Alto and I notice that its blocking qualys scan on my internal network for the traffic passing through the Palo Alto vwire.  How can allow all qualys traffic to pass through the Palo Alto?

ismailsh by L1 Bithead
  • 1665 Views
  • 1 replies
  • 0 Likes
  • 23835 Posts
  • 112 Subscriptions
Top Liked Authors
Labels