General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 421 Views
  • 0 replies
  • 2 Likes

Resolved! PA-220 Reboot

Hi Team,

Firewall got rebooted instead of generating a tech support file can we do any other troubleshooting to check why the firewall was rebooted. If i generate the tech support file i have to go to Palo to check what it is and wait till i get the

...

Resolved! PA 500 Cisco 3560

Hi there, 

I am totally new here in Paloalto firewall. I have PA 500 and want to do lab test and I want to find a basic instruction to set up PA to connect internet and also connect to Cisco switch. I am very familiar with Cisco ASA and switch since

...

phugiay by L2 Linker
  • 5134 Views
  • 13 replies
  • 0 Likes

Resolved! IPSEC Tunnel to ASA - PeerID issues

I am setting up an IPSec tunnel to an ASA. I am getting an error message about the PEERID type only allowing IP but received FQDN. Per the other KB article, I changed the PAN Exchange mode to Aggressive.

Now the PAN received a FQDN of the ASA side an

...

SDorsey by L4 Transporter
  • 5870 Views
  • 5 replies
  • 1 Likes

Newly registered domains

Occasionally we run across newly registered domains that we either know or believe to be non-malicious and that we need immediate access to.  Newly registered domains are blocked by the Palo Altos - is there a way to flag specific newly registered do

...

Exporting all the rules and sub rules

I have been tasked with exporting all the rules from our Palo Altos for monthly review purposes.

 

Panorama has shared rules as well as rules in each device group. Our firewalls have rules on them as well.

 

  • Support suggests using the PDF/CSV option
...

AWongCA by L0 Member
  • 4886 Views
  • 2 replies
  • 0 Likes

Vwire

Vwire is introducing latency please help me. by using vwire we are observing 80 ms of latency.

URL filtering for a School

I am using a Palo Alto 500 to filter url content on a school network. I have blocked streaming media but some sites like college humor still go through. How can I block all streaming video, also I would love to able to block flash games. I am new at

...

donaldmc by Not applicable
  • 6133 Views
  • 3 replies
  • 0 Likes

Resolved! vulnerability block action

Hi,

when creating a profile choosing block action is seen as "reset-both" on the logs.

is that normal behaviour or not ? Thanks.

PanIst by L3 Networker
  • 7238 Views
  • 10 replies
  • 0 Likes

syslog udp session keep alive ?

 

When forwarding logs, they are being sent to udp 514. The udp time out is 30 seconds, and the syslog server actually receives packets every 5 seconds. However, I wonder why the firewall keeps the session longer than 30 seconds. When the time is lon

...

스크린샷 2022-12-29 오후 2.34.03.png
스크린샷 2022-12-29 오후 2.34.50.png

Resolved! IPSEC Tunnel down on GNS3

Hi- I am trying to implement exactly this article for ipsec - https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGkCAK

However the tunnel is not coming up, I am not sure if its gns issue or my configuration?

 

Wireshark packe

...

Capture.JPG
Capture1.JPG
Capture2.JPG
Capture3.JPG
  • 23695 Posts
  • 110 Subscriptions
Top Solution Authors
Labels