General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Session count can't break 1025

Hi all, I am running a VM-series on aws and it has a issue with session, it's cannot break 1025. I'm new to Palo Alto so there are many term i really don't understand. Some body please tell me what is Active Session? Is it Session count on UI? Why can't it break 1025?

ahcogn1_0-1689301370235.png
ahcogn1 by L0 Member
  • 3737 Views
  • 5 replies
  • 0 Likes

Resolved! Dual IPSEC tunnels load balanced between two endpoints

Is there a way to setup TWO IPsec tunnels using different paths (for instance, two different ISP's) and have them share the traffic load between the two vs having a primary and backup? I'm aware we can setup two tunnels and use path monitoring to fail over from one tunnel to the other but is there a way to have two or more tunnels and have the...

Resolved! Cortex XDR Cloud Identity Engine Integration

We have planned the configuration of the Cortex XDR Cloud Identity Engine for our on-premises service. Could you please tell me whether the Cloud Identity Engine agent should be installed on the AD server or on a separate (NEW) server? What is the best method?

Resolved! Custom App-ID iMessage

Hi,We have recently installed a PA-2020 at our college and am very happy with the device. The only issue we are having is that students are still able to use iMessage on their iPads. I can't find an existing app-id for that and am wondering if anyone has already created a custom id for such. I am going to follow the tech note on creating a custo...

Rowan_C by Not applicable
  • 7365 Views
  • 6 replies
  • 0 Likes

Resolved! UserID/Group mapping

I have created a LDAP profile, group mapping and user mapping from Panorama, and it seems to be working. Im able to do "test authentication username [email protected] authentication-profile xxxxxx-LDAP password and this works fine. My problem is that panorama doesnt seem to be able to "manage" Palo Alto Networks User ID Agent Setup ta...

Website marked as phishing

Hello, Our backend website "backend.knokcare.com"was flagged as "phishing" by PaloAlto. May you change this categorization, please? We've already requested this change thorough https://urlfiltering.paloaltonetworks.com/ to "Health-and-Medicine". "knokcare.com" is in this category. We have customers using paloalto protection that are being bloc...

Resolved! Palo Alto API for End of Life services.

Team, Any aware if Palo Alto provides any API's which can help with End of Life dates? e.g. check for a device by serial number, by model number, check for the PAN OS version etc. Regards, Nikson.

DNS Security checks for records different than A

Hi, Does DNS Security checks DNS records other than A and how it works ? I think CNAME are checked as they are similar to A in meaning of request content. How about other records like PTR and TXT as they can be used more frequently for C2 traffic?

OIDS differents on HA A\P nodes

Dear Team, I have a suggestion. Where can I find more information about OIDS of HA peers. I need some claryfication about, can this OIDS be different on HA Active Passive. I have two PA 5220, A\P. Pan-OS version is 10.1.10-h1. Need some advice. #OID #5220 #HA pair

Limit Hub and Spoke PA 460

We have done the creation of a tunnel (VPN) as hub and spoke, currently we will connect 203 devices to this tunnel, we have been researching but we have not found information on how many peers this tunnel can support with this hub and spoke configuration? Does anyone know the limit of devices that can be linked to the same tunnel? If there is ...

Resolved! Push is grayed out

Hi Login Banner and System Log are created and commited in Panorama. and then click on Push button on top right corner. I got the below window. Why the Bush is grayed out? Is there something needed to completed before the Push? Thank you

kevinospf_0-1694271331632.png
kevinospf by L3 Networker
  • 7344 Views
  • 6 replies
  • 0 Likes

Cortex XDR high CPU on a windows VDI workstation

We are having some performance issues, with cortex xdr eating up cpu during VDI bootup. We installed agent on a non-persistant VDI, and followed recommended config settings and also followed appvolume recommendation. I checked task manager and found that during boot up, it seems cortex xdr is competing with Defender in cpu consumption, defender...

Global Protect Authentication Destination is 0.0.0.0

Hi, I have a SIEM use case for VPN login failures followed by success to the same user after 5 failures. When I check the event, I could see the source is external IP as expected and destination is 0.0.0.0 and with our internal VPN gateway IP alternatively. Here I am getting confusion should I consider the destination IP 0.0.0.0 also or we can i...

Resolved! PaloAlto License Expired

HiOur PA threat prevention has expired and we don't plan to renew it now, so what do you think the damage that may be happening untill we renew the license.thanks

IT-999 by L0 Member
  • 3373 Views
  • 3 replies
  • 0 Likes
  • 24428 Posts
  • 125 Subscriptions
Top Solution Authors
Labels