General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

PA460 firmware upgrade

We are using PA460 model and are on version 11.1.6-h10. We are planning to upgrade. I read in one of the document that moving to preferred version 11.2.4-h7 has some out of memory issue which causes the device to crash and reboot unexpectedly in PA460 model and it is corrected in 11.2.4-h12 which is not a preferred version. Let us know the best ...

Migrate PA-850 to VM500

Hi, I need to migrate a HW PA850 to VM500 in the same version PanOS. So What is the recommended way to transfer the config? export/import running-config should be OK? Or it could be any issue bacause of diferent device? or adding all config commands via CLI?

BigPalo by L4 Transporter
  • 690 Views
  • 1 replies
  • 0 Likes

API pagination for Panorama address object

Hi All, I am trying to confirm what is max number of entries can API query return for address object .Like we have around 50k address , will API query will fetch all data in single page or it will fetch specific number of entries ? or we need to use some sort of pagination if we have some limit per page and what parameter i can use. Thanks

Questions Regarding Output Difference in "show ctd-agent status security-client" Command

Hi Team, I have a question regarding the output of the “show ctd-agent status security-client” command.My understanding is that this command displays the connection status between the firewall and the content cloud.In our customer’s environment, I observed a difference in the command output after upgrading from version 10.2.x to 11.1.x. [PAN...

Resolved! NAT issue - ISP interface IP different than public IP block assigned

I'm currently working with PA support on this issue but I thought I would put this question out there for the community to see if anyone has had a similar problem. We are in the process of migrating from Juniper SSG firewalls to the PA-500 and the issue we have is when we attempt to migrate our ISP connection to the PA, we are no longer able to...

Resolved! Pull address object using XML API

Hi All I am trying to get details of particular address object( not all address present in shared location) .Any pointer for XML API or any suggestion to used panos python SDK

Resolved! Identifying Source IP Addresses for Routing Palo Alto Firewall Logs to an Azure Collector via IPSec Tunnel

Hello, As part of the implementation of log forwarding to an Azure collector, we would like to identify the source IP addresses currently used for routing logs from our equipment. An IPSec tunnel is already in place between the front-end and Azure. How can we identify the source IP addresses for routing logs from the following devices to t...

Resolved! Request: List of GTIN / UPC Barcodes for Palo Alto Networks Products

Hi everyone, I’m looking for a complete list (or official source) of GTIN / UPC barcodes for Palo Alto Networks products — including firewalls and accessories. We’re integrating Palo Alto products into an eCommerce catalog and would like to ensure barcode accuracy for inventory and listing automation. If anyone has access to an official database...

Resolved! THREAT MAP on GUI is unable to export

Attention: Global TPM team, THREAT MAP on GUI is unable to export in PAN-OS 11.1.12.I found the below issue. In PAN-OS 11.1, when do this issue fix? // PAN-OS 11.2.8 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-2/pan-os-release-notes/pan-os-11-2-8-known-and-addressed-issues/pan-os-11-2-8-addressed-issues----PAN-290923(Panorama v...

MasaW by L2 Linker
  • 2306 Views
  • 1 replies
  • 0 Likes

Resolved! BPA Tool not showing details for issues

I've just come back after a few months, and uploaded a new TSF file to the BPA tool, and it shows me there are issues in a number of rules that are CSC/non-CSC checks, but when I bring up the list of issues, where previously you could expand each rule with an issue to show the exact problem with it, it now does not expand the details, ie. I am u...

M.Studte by L0 Member
  • 2490 Views
  • 2 replies
  • 0 Likes

Resolved! LOAD snapshot ERROR

Hi, when I try to load a snapshot config from a PA4020 on an another PA4020 with the same version I have the followingerror result unexpected here. Discarding.certsandkeys unexpected here. Discarding.custom-logo unexpected here. Discarding. I have tried to delete the custom-logo in the xml files without success Any Idea?

alle by L3 Networker
  • 3728 Views
  • 2 replies
  • 0 Likes

Clarification Needed on Multiple Static NAT Rules with the Same Public IP Address

Hi Community, I’m working with a customer who had previously configured a dynamic IP source NAT rule with only one address in the pool. This setup worked as expected for just one PBX since after the first session, the public IP would be in use, limiting further connections. However, the customer has now changed the configuration to use multiple ...

TammamA by L1 Bithead
  • 1475 Views
  • 1 replies
  • 1 Likes

Restrict Individual Administrators by Interface or IP

Is there a way to restrict access for specific administrators by interface or IP address? I really thought I'd seen this somewhere, but now I cannot find it in GUI or docs.Quick explanation of what we want to do. We want to have a sort of backdoor, emergency access to the firewalls directly from the Internet. That is, should some catastrophic ne...

cosx by L2 Linker
  • 9651 Views
  • 8 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels