PA820 Upgrade Path
Hello, I was wondering what is the best path to upgrade from PAN-OS 9.1.15-h1 which I have read will be EOS-EOL 12-31-2023 to PAN-OS 10.2.4-h3 Thanks.
Hello, I was wondering what is the best path to upgrade from PAN-OS 9.1.15-h1 which I have read will be EOS-EOL 12-31-2023 to PAN-OS 10.2.4-h3 Thanks.
Team, I have one FW running agentless User-ID in an environment with two separate Domains one is XYZ and another domain is 123. User-ID can see both domains but cannot monitor both of them so users that login on XYZ domain are restricted in the policy's but for users that login under 123 User-ID does not see them so they are just blocked. An...
Warnings: External Dynamic List <list> is configured with no certificate profile. Please select a certificate profile for performing server certificate validation. Customer went from 7.1.x to now 8.0.x and is using a MineMeld link in the External Dynami List(EDL). This link is to a https site. We followed this link: https://live.paloal...
Prisma access is preventing me from using Bing-integrated Chatgpt. Yeah, there is a persistent problem with Prisma access on Chatgpt. On the Sase page at https://sase.status.paloaltonetworks.com, you might view.https://sase.status.paloaltonetworks.com/ I applied these temp solutions: Try configuring the split tunnel and adding these fqdns t...
SIP traffic is not working properly, we recently upgraded to PAN OS version 10.2.4-h2 and seeing issues with multiline calls Steps taken: ALG is disabled, we have already created SIP-override and RTP override but no luck. @Param_Upadhyay @UtkarshKumar We then did a packet capture and found that SIP traffic flow completes fine and call works f...
Hello good afternoon, here again with some doubts with some new doubts about Panorama, thank you very much for the collaboration and support. What happens in this case: I have a firewall that allows a certain template stack, with X Networks and Devices configurations. These firewalls (in HA) will be migrated to a new template stack, but there I ...
After this log message the dataplane start a auto restart and I don't know what meaning. After five minutes the dataplane come back up and the operation is normaly. Severity: critical Description: gdb:2 tracked gdbs, calling early dp down fail I uses a PA-3220 with PAN-OS 9.1.0 without HA.
We are adding a new Web Server certificate for portal validation in our brand new firewall. We created the CSR in the Firewall and exported it to sign it with GoDaddy CA. Once we download the bundle from GoDaddy we extracted the root, intermediate, and server certificate in Base64 format.We can import the root and intermediate without any proble...
ISSUEWhen try to configure DNS Proxy with panorama after commit we get next message error:dns-proxy -> xxxxx-> server-profile 'yyyyy' is not a valid referencedns-proxy -> LAN_speedup -> server-profile is invalid xxxxx ->dns proxy configuredyyyyy ->server dns profile created RESOLUTIONThe DNS server profile was added as a featur...
We have a number of 3020's coming to EOL and running max version 9.. We have purchased new PA-450's to replace these but they can only run on min version 10. When I load the config from 3020 to 450 commit fails as part of the config is either no longer viable or in the wrong place. I have been able to edit certain bits but not sure what else m...
I downloaded and deployed the Trial PA-VM for Private Cloud (vSphere7.0), but I could not log in using admin/admin at the "PA-HDF Login:" prompt.I searched the Community for similar issues, but could not find a specific solution. I am having trouble transitioning to the screen for entering the key to enter maintenance mode quickly enough.Could y...
I tried generating a self signed certificate on the firewall and installed this on the domain controller and assigned it to WinRM-HTTPS. This worked but I can’t figure out why it’s rejecting the certificate from our internal CA.
Hello Live Community, how are you doing? I have the following doubt and concern If I have a PA configured with a Self Signed SSL certificate for Global Protect use, SSL/TLS profile for GP, and that certificate is is close to expiring. All the workstations that have the global protect client, have the certificate installed, so that it is re...
Hi All, l think l am missing something fundamental. l have a policy with "allow" action, but in the traffic logs session end reason is "policy-deny" : Despite all this, l am still able to access the server:
Hello I'm currently planning to upgrade my Palo Alto Networks firewall from version 9.0 to 10.1. As this is a critical operation, I want to ensure a smooth transition without any disruptions to our network and security policies. Before proceeding with the upgrade, I'd like to seek advice and insights from the community on the best practices to f...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 3 | |
| 2 | |
| 2 | |
| 2 |

