General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1956 Views
  • 0 replies
  • 0 Likes

Resolved! SCEP on Panorama Error

We're testing SCEP on Panorama and getting an error saying "Unable to generate SCEP certificate, Certificate CA Retrieval Failed". Doing a tcpdumb nothing immediately sticks out, there is not untrusted CA error or anything like that. Is there any ind

...

Claw4609_0-1696269367816.png
Claw4609 by L5 Sessionator
  • 2552 Views
  • 1 replies
  • 0 Likes

Resolved! create GlopalProtect Gateway with xml api

Hi i need to create GlopalProtect Gateway with xml api

there is the url i send 

----------------------------------------------------------

https://{{url}}/api/?location=vsys&vsys=vsys1&name=new-gw&key={{key}}&type=config&action=set&xpath=/config/devi

...

Reset-Both for client/sftp server

I have been noticing lots of traffic between an internal client to one of our Sftp server where the log states

SSH User Authentication Brute Force on Port 22  - Action Reset-Both.  We have checked the client and has the correct credentials for the de

...

WLC -Radius Communication over Prisma SDWAN

Wireless user Can be authenticated successfully when WLC and Radius in Same LAN network   OR  WLC Communicate with Radius over MPLS.

 

it is not working over Prisma SDWAN.

 

I have checked from the radius server - No fragmentation issue BUT it gives

...

MIB Files Download

Does anyone know where I can find the Palo .MIB files? Not the .my or .md5 files. I have already loaded them and well it was useless. Maybe it's my lack of intellect but they are missing the OID numbers. I also can't get them load when creating an SN

...

Icon Legend

Hello -

Is there an icon legend for Palo Alto.  Meaning, the icon difference between like a single user and a group.  Make sense?

Resolved! Is PA 10.0.4 version CLI commands significantly updated?

I'm using 10.0.4 for my eve-ng labs. I'm using chatgpt and google to look up CLI commands. I'm concerned with writing some Python scripts, so when I really focus on PanOS I will be buying textbooks and going to the admin guide and going for a PCSNE.

...

hfakoor2 by L2 Linker
  • 1584 Views
  • 1 replies
  • 0 Likes

mDNS (Apple Bounjour) between two VLANs through a PA

Hi,

 

this is the scenario:

 

- a PA with two physical L3 interfaces (1 zone per interface, 1 subnet per interface, we call them A and B).

- I have a device in Subnet A which is an Airport thing with a printer attached. Devices in Subnet A they can discov

...

myrdin by L2 Linker
  • 25054 Views
  • 22 replies
  • 0 Likes

Resolved! Problem with connectivity to my lab network

So I'm running some PA's inside a Eve-NG lab environment. Everything has connection to everything, including to my local PC with one caveat. When I ping out the PaloAlto firewall to an address I need to specify a source interface or it deems host Unr

...

hfakoor2 by L2 Linker
  • 4129 Views
  • 5 replies
  • 0 Likes

Reporting URLs and Bytes together?

We are trying to produce a report which summarizes the URLs visited by a specific user along with the total bytes downloaded from each URL.

It seems that the bytes are available in the Traffic log, but not the URLs; conversely, the URLs are in the URL

...

KGC by L3 Networker
  • 4842 Views
  • 5 replies
  • 0 Likes

Resolved! Traffic Loc Collection API

I am calling for traffic logs but only getting the first 20 lines by default as expected but when I add nlogs=1000 it makes no difference. has anybody else come across this??

 

Edited...

 

OK it seems that the nlogs only works to generate the job and

...

Mick_Ball by L7 Applicator
  • 1262 Views
  • 2 replies
  • 0 Likes

Global Protect Not able to access external application

 

Hi, I have a web application hosted by OCI,  from on Prem I and my users can access the application without any problems.  However when connecting to our PA setup through global protect we cant access the application.

 

We have a very similar setup

...

paul-b by L0 Member
  • 3724 Views
  • 3 replies
  • 0 Likes

Web Auth FW with HA

Hello,

I am configuring Webauth with certificate on my FW cluster and currently the access to the active FW is correct.

I have created CA and client certificate correctly, the problem I am facing to access the passive node,

is it necessary to create

...

Alpalo by L4 Transporter
  • 1332 Views
  • 3 replies
  • 0 Likes
  • 24202 Posts
  • 117 Subscriptions
Top Liked Authors
Labels