General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4231 Views
  • 0 replies
  • 0 Likes

Cortex XDR: How to block execution of some unwanted apps

Hello All, We have observed some unwanted applications( Any desk, WhatsApp) used by end users in customer environment. Is there any way apart from blocking the hash present in cortex console which will block the execution of such files. Thanks in advance. Regards, Sakshi Seth

When logging into the community can I turn off the email a code?

Whenever I want to log into the palo alto networks community, it asks to email a code to my email address. Sometimes I think it already did but nothing came, but in reality I never clicked the button to send the email. Is there a way to turn that off, or maybe do a push notification to Duo instead? This is why I use the r/paloaltonetworks subr...

ksauer507 by L3 Networker
  • 1267 Views
  • 1 replies
  • 0 Likes

Day 1 Configuration of PAN-410 model firewall

I created day 1 config file for my PA-410 model firewall and loaded the configuration. But while commiting Got below error: "email-scheduler -> Possible Compromise -> report-group 'Possible Compromise' is not a valid referenceemail-scheduler -> Possible Compromise -> report-group is invalid " When I double checked the file I downlo...

Sujanya by L3 Networker
  • 3957 Views
  • 5 replies
  • 0 Likes

Resolved! Qualys scanner blocked

Hi, We recently deployed Palo Alto and I notice that its blocking qualys scan on my internal network for the traffic passing through the Palo Alto vwire. How can allow all qualys traffic to pass through the Palo Alto?

ismailsh by L1 Bithead
  • 2780 Views
  • 1 replies
  • 0 Likes

Resolved! GlobalProtect Machine account exists with device serial number config

Dear Team, I'm trying to set up GlobalProtect's 'Serial Number Check' feature, but I'm having a hard time. GlobalProtect is already being used in conjunction with LDAP. So, when I do not use the function, I log in normally. I want to control by matching the serial number to the LDAP user. Is it correct that the serial number mentioned ...

CHOEKyungJun_0-1685060942772.png
CHOEKyungJun_1-1685060964833.png
CHOEKyungJun_2-1685060974068.png

Strange behaviour via Palo Alto Firewall.

Could someone explain why this site would fail via our firewalls, it works fine local and split tunnel. I would imagine it's to do with encryption levels as wireshark shows a few cypher spec changes during the handshake.. FYI.... SSL Proxy / decryption is switched off for this site and aplication is set to any and is classified as education/low ...

Mick_Ball by L7 Applicator
  • 3480 Views
  • 6 replies
  • 0 Likes

palo alto block page not showing

Running panos 10.1.8 on vm-300. a blocked https page gives user -This site cannot be reached rather than palo block page notification. Is this because ssl decrytpion is not enabled and is required to get block page notification for https url which are supposed to be blocked via url filtering.

PA440 not shuting down instead getting rebooted after sometime .

Hello I am trying to shutdown the device using CLI and GUI but it is getting reboot after some time . Click on Device tab > Setup link > Operations tab. Click on shutdown device under device operation shutdown command (request shutdown system) in the CLI. PAN-OS 10.2(10.2.3-h4), Please help me with the issue .

Resolved! Creating a rule

I am creating a security rule to allow url whitelist but i m facing issue to commit Push the rule.One column is Audit comment is not taking any text.Please suggest what should i do.

Khushnood_0-1685467781544.png

LACP betweeb PA3400 and Cisco Switch

I have config LACP between PA3400 and Cisco Switch everything work fine implement test on standalone mode Cisco eth1/1 (po1)<----> PA eth1/1 (ae1) Cisco eth1/2 (po1)<----> PA eth1/2 (ae1) All traffic can use normally until we test shutdown or unplug one of member on firewall . Result : traffic is dropped 1 timeout My question : this...

Limiting Access to Office365 only

Hi All, So we have a PA FW with PANOS 9.1.x We have a requirement for a specific inside vlan to have internet access to office365 only (teams,outlook etc etc).. tried with app-id using the office (365-enterprise-access and consumer) access to no avail, Suspect this did not work due to the FW not able to decrypt the ssl traffic. we also do not ha...

Ants by L1 Bithead
  • 3772 Views
  • 4 replies
  • 0 Likes
  • 24357 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels