General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! GRE Tunnel to Zscaler failover

Hello,I have two Destination IPs (one for each GRE Tunnel to Zscaler). How would I need to configure my palo alto firewall to allow GRE Tunnel Failover, so that traffic only flows through the primary tunnel and flows through the secondary tunnel when the first one fails?Thanks!

smshafek by L1 Bithead
  • 10009 Views
  • 5 replies
  • 1 Likes

How and when to use ARP-Loadsharing and Floating IP - Upstream/Uplinks

How and when to use ARP-Loadsharing and Floating IP - Upstream/Uplinks Hello Live comunity, how are you all doing. In the use cases you can see that the use of ARP Load-sharing or IP Floating, ARP is used thinking in the access to the Gateway vs IP Floating that is something more like fail-over more like an active/passive so to speak, than ARP L...

Metgatz by L4 Transporter
  • 2760 Views
  • 1 replies
  • 0 Likes

How to get PaloAlto to use Local CA certificate instead of self-signed certificate.

On my network, I have a Windows Server CA, a Windows 10 box, and I PaloAlto box. The PA is currently running Software version 10.1.7. I have created a PA.csr and sent it to my CA server, and received my PA.cer w/o a private key. I have uploaded the PA.cer and the CARoot.cer to my PA box. It seems like no matter what I do, or configure, I can...

shayes by L0 Member
  • 2129 Views
  • 2 replies
  • 0 Likes

Integration Issue - XSOAR Cortex and Splunk SIEM

Hello Community, I am facing an issue while trying to integrate XSOAR Cortex with Splunk SIEM. I have followed the necessary steps, including providing the IP address of the Splunk SIEM, my username, and password for the SIEM account. Additionally, I have left the port at the default value, which is 8089. However, when I click on the "Test" bu...

error message test integration.png

Exporting logs

Hi, I am trying to export filtered logs from the monitor->traffic tab, but I get nothing: When I click on the export button there is a little window "Exporting logs, please wait.." that is running about 10 or 20 min and some time it never end and some time is ended with the link to download the file, but the file is empty "Zero bit".. ?? PA-3...

belmar77 by L1 Bithead
  • 4173 Views
  • 4 replies
  • 0 Likes

Enabling IPS on PA-3220

Has anyone been successful with enabling the IPS feature on a 3220 ngfw? We have the appropriate advanced threat prevention license applied, but I am having difficulties getting it enabled and configured. Thanks in advance!

Error User-id agent Paloalto

Good morning, we recently updated the version of user-id agent on our servers. We have 2 UID agents and several DC's...In the agents with the new version, we constantly get a reconnection log with one of our DCs. (Virtual Machine W2019) We also have other DC on this UID without this alerts....We only have alerts between this DC and both UIDs age...

Alpalo_0-1687875903128.png
Alpalo by L4 Transporter
  • 1187 Views
  • 1 replies
  • 0 Likes

XML API user-id timeouts is there a configurable global setting ?

Can you set a global timeout value for XML API user-id timeouts is there a configurable global timeout ?We are useing clearpass 6.6 to authenticate our wireless users and using technote v5 clearpass palo alto integration to push user name and ip address via post authentication action via xlmapi. Only after upgrading to 7.1.5 form 7.1.4-h2 we saw...

ansible code for panos_static_route no error in playbook but still not reflected in panorama FW

Hello I am trying to automate the static routing of Panorama FW using Ansible there's no error in the playbook but the static route data is still not reflected in the Panorama FW URL. Hope someone can help me --- - name: define static route vars: device: ip_address: username: password paloaltonetworks.panos.panos_s...

RIson by L0 Member
  • 1234 Views
  • 1 replies
  • 0 Likes

Resolved! PA 220 ALM Red light

Hi Guys, I'm a newbie on PA still studying. I got a question, we are seeing a red light on ALM on our PA 220. I did some research and it was about threat and application updates. I did check our licenses and expiration is on DEC 2023. As per our Local IT the network is stable.

weezy_0-1687764757825.png
weezy by L3 Networker
  • 5609 Views
  • 3 replies
  • 0 Likes

Resolved! New Panorama migration - commit error when completing

Hi All, I have just migrated an active/passive pair of 5220's to Panorama. After completing this following https://docs.paloaltonetworks.com/panorama/8-1/panorama-admin/manage-firewalls/transition-a-firewall-to-panorama-management/migrate-a-firewall-ha-pair-to-panorama-management.html#id177DF10905Z I go to perform step 4 and I get an error which...

a.jones by L3 Networker
  • 14462 Views
  • 5 replies
  • 1 Likes
  • 24443 Posts
  • 125 Subscriptions
Top Solution Authors
Labels