General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4451 Views
  • 0 replies
  • 0 Likes

Sales Material for Clientele

Hi, We are an MSP that is looking for Sales Material or training for Palo Alto. I am having a difficult time finding any of this material on Palo Alto itself, so wanted to see what, if any, the community has to share. Thanks!

Resolved! SCEP on Panorama Error

We're testing SCEP on Panorama and getting an error saying "Unable to generate SCEP certificate, Certificate CA Retrieval Failed". Doing a tcpdumb nothing immediately sticks out, there is not untrusted CA error or anything like that. Is there any indication of what to look for to address this? System logs basically just say sslmgr SCEP certifica...

Claw4609_0-1696269367816.png
Claw4609 by L5 Sessionator
  • 3038 Views
  • 1 replies
  • 0 Likes

Resolved! create GlopalProtect Gateway with xml api

Hi i need to create GlopalProtect Gateway with xml api there is the url i send ---------------------------------------------------------- https://{{url}}/api/?location=vsys&vsys=vsys1&name=new-gw&key={{key}}&type=config&action=set&xpath=/config/devices/entry[@name='localhost.localdomain']/vsys/entry[@name='vsys1']/global...

Reset-Both for client/sftp server

I have been noticing lots of traffic between an internal client to one of our Sftp server where the log states SSH User Authentication Brute Force on Port 22 - Action Reset-Both. We have checked the client and has the correct credentials for the destination. What else should I check? The logs on the sftp server do not indicate any errors.

WLC -Radius Communication over Prisma SDWAN

Wireless user Can be authenticated successfully when WLC and Radius in Same LAN network OR WLC Communicate with Radius over MPLS. it is not working over Prisma SDWAN. I have checked from the radius server - No fragmentation issue BUT it gives access-reject to any users try to access via Wireless. ION version : 6.1.3.

MIB Files Download

Does anyone know where I can find the Palo .MIB files? Not the .my or .md5 files. I have already loaded them and well it was useless. Maybe it's my lack of intellect but they are missing the OID numbers. I also can't get them load when creating an SNMP walk.

Icon Legend

Hello - Is there an icon legend for Palo Alto. Meaning, the icon difference between like a single user and a group. Make sense?

Resolved! Is PA 10.0.4 version CLI commands significantly updated?

I'm using 10.0.4 for my eve-ng labs. I'm using chatgpt and google to look up CLI commands. I'm concerned with writing some Python scripts, so when I really focus on PanOS I will be buying textbooks and going to the admin guide and going for a PCSNE. For now I want to script. The suggestions by google and chatgpt for CLI commands seem to vary a...

hfakoor2 by L2 Linker
  • 1890 Views
  • 1 replies
  • 0 Likes

mDNS (Apple Bounjour) between two VLANs through a PA

Hi, this is the scenario: - a PA with two physical L3 interfaces (1 zone per interface, 1 subnet per interface, we call them A and B).- I have a device in Subnet A which is an Airport thing with a printer attached. Devices in Subnet A they can discover the printer via the Apple Bonjour service- Devices in Subnet B cannot discover the printer in ...

myrdin by L2 Linker
  • 29726 Views
  • 22 replies
  • 0 Likes

Resolved! Problem with connectivity to my lab network

So I'm running some PA's inside a Eve-NG lab environment. Everything has connection to everything, including to my local PC with one caveat. When I ping out the PaloAlto firewall to an address I need to specify a source interface or it deems host Unreachable. I believe this is causing my PC to not be able to ping the PaloAlto interfaces either ...

hfakoor2 by L2 Linker
  • 5347 Views
  • 5 replies
  • 0 Likes

Cannot install Applications and Threats : No matching contents package found in panupv2-all-apps

Hi thereI'm new here, just got our first pair or NGFW's. I'm trying to update to the latest PANOS which requires and install of Applications and Threats.How ever when i try to install it i get: Failed to update content with following message: encfilesize is 70541232 No matching contents package found in panupv2-all-apps-8743-8224.eap.tgz exitin...

Reporting URLs and Bytes together?

We are trying to produce a report which summarizes the URLs visited by a specific user along with the total bytes downloaded from each URL.It seems that the bytes are available in the Traffic log, but not the URLs; conversely, the URLs are in the URL log, but not the bytes.Is there some way or producing reports which correlate the various logs?T...

KGC by L3 Networker
  • 5371 Views
  • 5 replies
  • 0 Likes

Resolved! Traffic Loc Collection API

I am calling for traffic logs but only getting the first 20 lines by default as expected but when I add nlogs=1000 it makes no difference. has anybody else come across this?? Edited... OK it seems that the nlogs only works to generate the job and ID. does anybody know how to retrieve logs more than 20 at a time. I have a workaround by lo...

Mick_Ball by L7 Applicator
  • 1544 Views
  • 2 replies
  • 0 Likes

Global Protect Not able to access external application

Hi, I have a web application hosted by OCI, from on Prem I and my users can access the application without any problems. However when connecting to our PA setup through global protect we cant access the application. We have a very similar setup for some AWS hosted web applications and these work without any issues. Any ideas as I am stumpe...

paul-b by L0 Member
  • 4676 Views
  • 3 replies
  • 0 Likes
  • 24376 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels