General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

GlobalProtect on Mac 13.4.1 ("msgtype = hip" rather than "msgtype = portal")

I'm looking over the log files of a Mac (v13.4.1) that cannot connect using GlobalProtect (v6.1.1-5). I'm comparing it to another Mac running the same OS which works, and in the PanGPS.log files I'm seeing this difference: Working: Line 53: P10741-T259 07/19/2023 15:37:40:147 Debug( 759): CPanMSService::Init connect timeout 5, received timeout...

Management Interface down

Hello, i have the problem that I have two PA-445 as HA clusters where the management interface does not have an uplink.I've already tried several cables and switches, but unfortunately I can't get an uplink on the interface.There is no spanning tree on the switches, all ports are active.Type: 1000T, Mode Auto, Flow disabled.Switch port: VLAN 1...

Resolved! Negate Deny Rule

Hi All, I have a negate rule on the firewall Souce Address - 10.1.1.1(Negate) Destination Address- Any Service- https Action- Deny Does it mean that it will allow 10.1.1.1 and deny everything or does it mean that it will deny everything and then I need to create an accept rule to allow 10.1.1.1. Will 10.1.1.1 be allowed through this negate...

Ujbal89 by L0 Member
  • 1687 Views
  • 1 replies
  • 0 Likes

Resolved! Secure Renegotiation in PANOS 9x?

I'm seeing some posts stating that Secure Renegotiation is not supported on the Palo Alto platform. Is this still true for the latest release, v9.x? If so, how is it enabled?

Personal VPN Services thwarting Company Policies

Downstream of our PAN's, we have our Citrix environment. This environment includes some Netscalers that have a nice feature in that they provide in their SYSLOG, two fields named "ClientIP" and "NATIP". This proves quite useful in that while the ClientIP field geolocates to a local Boston IP address, the NATIP address shows they are coming in...

Jaragorn by L1 Bithead
  • 7355 Views
  • 16 replies
  • 0 Likes

Resolved! EDL problem

Hi,I find this error: EDL(my list) Entry not referenced by a rule.What does it mean? How can I resolve it?

s_quasar by L3 Networker
  • 27783 Views
  • 18 replies
  • 0 Likes

Never Stop Learning - Palo Alto Networks’ NEW Education Services Offerings

The NEW Education Services Pages have been updated to a highly interactive section on the LIVEcommunity. You can find out more about expanding your skills and knowledge through Palo Alto Networks’ world-class education and certification programs. By enabling our community members to receive up-to-the-moment and constantly refreshed educatio...

jennaqualls by Community Team Member
  • 7240 Views
  • 3 replies
  • 2 Likes

Detect Unknowed device

There is a functioning access point TP-Link EAP225.Cannot be managed from connected devices.We know MAC Address because present on a label.Is on a unknowed subnet.But this device use gateway with Palo Alto.We don't know IP (we have try all usal IPs).We have try some porscan, verify with Wireshark but without result.I have try tu access to Paolo ...

configuration change used to be pushed to firewall

Hi Configuration change in template/stack used to be pushed to the firewall from panorama. but now after some change(creating new zone etc) made on template is pushed to the firewall, the change cannot be seen at the firewall again. so the configuration not be pushed to the firewall. Palo alto firewall is connected to panorama normally and it sh...

kevinospf_0-1694620407770.png
kevinospf by L3 Networker
  • 4057 Views
  • 8 replies
  • 0 Likes

submit error message when remove DG

Hi Device group is created in panorama. but when I want to remove all of Device goup and submit, I got the error message. Since it is invalid command, why it cannot be removed? Please see the below. Thanks

kevinospf_0-1695089104872.png
kevinospf by L3 Networker
  • 1194 Views
  • 1 replies
  • 0 Likes
  • 24412 Posts
  • 125 Subscriptions
Top Solution Authors
Labels