General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1918 Views
  • 0 replies
  • 0 Likes

Resolved! PBF for incoming traffic

Hello everyone,

I've a setup on a PA-820 cluster with 3 ISP connections.

Every connection has its own zone (for clarity WAN-1, WAN-2 and WAN-3) and the default route in the virtual router is for WAN-2.

I need to publish some services from my DMZ subn

...

vulnerability block-ip inoperative

I put anti-spyware vulnerability protection

critical, high The action is set to block-ip 1800

From the threat log, we can see that spware is effective, but vulnerability is not effective, it is drop, not block-ip

I also checked flahs like client to s

...

Palo Alto Firewall Lab

Hello

I just finished a Palo Alto Firewall course and I want to practice what I learned. I have a PA firewall as a virtual machine.

Where can I find some free practice labs with questions and objectives, for hands-on work?

And what software do I need

...

Device Telemetry to Cortex Data Lake

Hello,

 

just finished to setup Cortex Data Lake on my PA-220 (without Panorama, using the Hub).

 

After enabling Telemetry (as asked by 10.0.1) and setting up the Telemetry Region as my Cortex Data Lake region (Europe) the status for Device, Product

...

Schermata 2020-09-29 alle 22.37.32.png
duccio by L0 Member
  • 15560 Views
  • 7 replies
  • 1 Likes

DNS Server Profile on a vsys

I set up an additional vsys for a different network with it's own DNS servers, which send the integrated user-id to the relevant domain controllers. A DNS Server Profile and proxy have been setup in the additional vsys. But the user-id DNS requests a

...

s0lselcia by L3 Networker
  • 1479 Views
  • 2 replies
  • 0 Likes

Resolved! error message after Panorama boot

Hi Anyone can help to take a look at the below error message after Panorama started to boot? Thanks

 

 

[<ffffffff8114bb1d>] ext3_writeback_writepage+0xc4/0x159
[<ffffffff810b80bd>] __writepage+0xe/0x26
[<ffffffff810b8561>] write_cache_pages+0x25d/0x36

...

kevinospf by L3 Networker
  • 1356 Views
  • 1 replies
  • 0 Likes

Application and Threat update failing

hi,

 

I am trying to update my content (Application and Threat) under Dynamic update, however it is continuosly failing with the below error,

Enqueued Dequeued ID Type Status Result Completed
--------------------------------------------------------------

...

Resolved! Arp Cache out time- Can be changed need to confirm

 

I was able to change the default arp cache timeout from 1800 to 3600.

 

as shown below

 

 

set system setting arp-cache-timeout
<value> <60-65535> ARP cache timeout interval, in seconds

> set system setting arp-cache-timeout 3600

ARP cache timeout:3600

mparm

...

MP18 by Cyber Elite
  • 11141 Views
  • 5 replies
  • 0 Likes

Resolved! no internet when connected to vpn

just setup GlobalProtect, when anyone connects to the vpn, they are able to access my company resources (file shares, remote server connections, etc) but they lose their internet connection.  i have noticed that we are not getting a gateway assigned

...

branedge by L2 Linker
  • 3571 Views
  • 4 replies
  • 0 Likes

Resolved! Precedence of Routing\NAT\Policy

Dear All,

 

Dear All,

 

I want to know what is correct precedence among Routing\NAT\Security Policy

 

So If a packet hits on the outside zone of the Firewall then whether below process is correct?

1. Whether FW has route for the destination\5.5.5.5 (

...

Migrate from PA-3050 to PA-3410

Hi, 


I've been tasked with migrating from PA-3050 to PA-3410. The 3050 is on a customers premises running PAN-OS 8.1.11 and the 3410 we have in our lab running 10.2 at the moment. I note I cannot downgrade the 3410 to anywhere near 8.1. Does that mea

...

Resolved! LACP on Passive Palo Alto

I am planning a new site and want to make sure my detailed design will not be a problem. I will have two PA-440s in Active/Passive High Availability mode. These will connect to a stack of Cisco C9300s. I will have an LACP port-channel connecting one

...

  • 24193 Posts
  • 117 Subscriptions
Top Liked Authors
Labels