General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2156 Views
  • 0 replies
  • 0 Likes

Connect same VLAN to multiple V-SYS

Hi All,

 

We have a PA-5220 firewall cluster which has running multiple V-SYS itself. The firewall is connected to the up stream router thru a port channel. On the up-stream router VLAN 10 is allocated to the WAN-IP range. I need to extend that VLAN

...

PBF not working with DNAT policy for server

Dear Team,

 

We have 5 ISPs and we have configured PBF for a group of IPs/networks.

 

We observed while routing the server from X ISP to Y ISP, the server which is published on X ISP becomes inaccessible.

 

Request you please help to resolve the issu

...

VINAYAKJ by L0 Member
  • 1062 Views
  • 1 replies
  • 0 Likes

Resolved! USER-ID mapping by firewall

Hi All,

 

Consider there is an user (xyz@example.com) is accessing some network for which communication is allowed in firewall based on USER-ID rules.

 

If the User(xyz@example.com) at the same times access the allowed sites by using two different IP

...

Sujanya by L3 Networker
  • 1545 Views
  • 1 replies
  • 0 Likes

SNMP Counter issue

Hello everyone

I am having a problem with SNMP requests on my palo-alto.

My issue is the following

I don't see any traffic on the physical interfaces of the palo alto, the traffic remains at 0

I can clearly see the traffic on the virtual interface (V

...

LCutman by L1 Bithead
  • 1242 Views
  • 1 replies
  • 0 Likes

Panorama config export fail. Host key verification fails

When I try and configure a scheduled config export the connection fails.  I get a message the RSA host key differs and asked to confirm adding the key.  This is a loop and always asks to add the key.  If I try to remove all the known host keys the co

...

Rawilson by L0 Member
  • 2287 Views
  • 1 replies
  • 1 Likes

comments in cli

Hi

 

I have a text file with PANOS command line arguments (set) what character defines a comment line ?

 

is there one ?

Alex_Samad by L4 Transporter
  • 14663 Views
  • 11 replies
  • 1 Likes

Resolved! PA is connected to a router

Hi PA(non-management interface) is connected to a router via a cable .  What is minimus condition for the two device to ping each other?

1. ip address in interface are in same subnet,

2.  interface associated with management profile to allow ping 

3.

...

Resolved! CLI configuration of adding interface to virtual router

Hi,

When add a interface into virtual router using cli, do I need to copied all the interfaces in the virtual router currently, then add this new interface into the list? 

For example, current default virtual router has two interface ethernet1/1 and

...

nowayout by L1 Bithead
  • 4183 Views
  • 2 replies
  • 0 Likes

Encrypted-DNS False Positive Heads Up

Presently 20230406.20033 and earlier updates are presenting a large number of false positive categorizations for encrypted-dns. This includes several domains from Bitwarden, YouTube, Google, Microsoft, Spotify, and many many others. If you have encry

...

BPry by Cyber Elite
  • 4439 Views
  • 6 replies
  • 3 Likes

Resolved! L2 Over L3 with VXLAN protocol

Hello, 

 

Is it possible to configure a VXLAN tunnel on a Palo Alto 3220 (running PANOS 10.2.3)? I.e. is L2 over L3 tunneling using VXLAN protocol possible? If so, is there an example configuration you can point me to?

 

Thanks!

brenna by L0 Member
  • 7381 Views
  • 2 replies
  • 0 Likes

blocking apps on google chromecast

Hello,

 

Looking to block apps on a new Google Chromecast all apps would be great but haven't been able to block AppleTV, HBOMax and ESPN. I've put appletvplus and hbo into our blocked apps rule but they still open and able to be accessed.

 

Any one

...

mlaporte by L1 Bithead
  • 2883 Views
  • 2 replies
  • 0 Likes

User cannot connect to Global protect portal.

The error message on this users GP client says they have an issue with they're certificate. The helpdesk apparently installed a certificate but I am not sure which one or where exactly. Now its telling me it cant access the portal at all. I want to d

...

  • 24247 Posts
  • 119 Subscriptions
Top Liked Authors
Labels