General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 197 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 879 Views
  • 0 replies
  • 0 Likes

Policy Edit - Search by IP

Am I missing something, or is 9.1.x Pan-OS still unable to search for address objects by IP address when editing policies?

 

Surely there is a way to do this... our workaround was to simply rename every object to be 'name - IP'.. but we have 4000+ ob

...

Resolved! exchange 2016 exclusions

Hi
Is it possible to install cortex XDR on an exchange 2016 server?
Do I need to make any exceptions before I install the traps?

Cortex XDR 

Thank you

Shmuel by L2 Linker
  • 1727 Views
  • 1 replies
  • 0 Likes

plao alto 850 SFP Ports

hi, is there any module or convertor that can allow using SFP as etherent and what exact part number of it please?

 

malamin by L0 Member
  • 1176 Views
  • 1 replies
  • 0 Likes

Resolved! Need help about PAN-OS 8 SNMP settings

Target is to forward the PA device status to a monitoring tool (Cacti). But "Cacti" respond SNMP error. Both v2 and v3 show the same error. Other devices (C2960) from the same subnet of PA has no problem.

 

Below is the PA settings

SNMPv3

Name: Test

SNMP

...

jeremylo by L3 Networker
  • 8760 Views
  • 5 replies
  • 0 Likes

Failed to commit policy to device after downgrading 10.0.0

Hi All,

 

We are trying to downgrade from 10.0.6 to 9.1.15. After we downgrade to 10.0.0 first , the auto commit have error. It mention failed to commit policy to device. Do anyone have go through the same problem? My suggestion is we just downgrade

...

Momoj by L2 Linker
  • 3670 Views
  • 3 replies
  • 0 Likes

Resolved! 3050 to 3250 Hardware Upgrade

Hi,

I will be upgrading my 3050 firewall (managed by panorama) to a 3250 soon and am curious if there are any best practices guides out there moving from a 3050 to a 3250?

 

Thanks!

Resolved! User ID Agent - Monitoring logs

We've noticed errors in the Monitoring logs of our Windows servers running the PAN Agent ID software.

The User ID is working fine but the error is continually filling the logs. (error screenshot attached)

 

PAN o/s 10.1.6 h3 and the Agent ID versio

...

Screenshot 2022-12-22 151042.jpg
vij by L1 Bithead
  • 3036 Views
  • 1 replies
  • 0 Likes

Resolved! threat log and traffic log time not match

Hi All, 

 

Same session id, see 37 entries in threat log at 9:28 and only 1 entry in traffic log at 11:16
Session ended reason is tcp-rst-from-client

There is a threat log before there is a traffic log
How to explain such a long time difference? Does a

...

Hsinyu by L1 Bithead
  • 1579 Views
  • 1 replies
  • 0 Likes

Resolved! dashboard session expire time

Dear Team,

 

If I look at the bottom of the dashboard, I can see 'session expire time'.

 

I think that option refers to the last time I logged out.

 

But the date info doesn't seem to fit

 

I would like to know what the setting is and why the time i

...

CHOEKyungJun_1-1671788957044.png

A way to correlate the logs for DNS Sinkhole?

Dear and valuable Live Community Members,

 

One of our customers came to us with some questions in regard to the issues he is facing to correlate the logs for DNS Sinkhole, and we are wondering if there is a solution to it.

 

The customer currently h

...

RMA replacement

Hi All,

 

We will doing a RMA replacement for PA-3220. The faulty unit is cannot access anymore from GUI or CLI and it's managed from Panorama. We only have the backup configuration and not the device state. So, what we should?

1)Do we replace the fa

...

Momoj by L2 Linker
  • 4489 Views
  • 13 replies
  • 0 Likes

RFC1918

Basic trust to untrust policy I see internal address sending snmp to addresses like 10.0.0.1, 192.168.1.x.

 

Do people create a policy to block internal traffic going to RFC1918 on the untrusted interface?

  • 24013 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels