General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! MFG part numbers confusion

 

Hello all,

Is there an official document from Palo Alto that lists their MFG part #'s?

For example if I'm looking to purchase a 1 year subscription for my 3220 stand alone firewall I need to know the license part # to purchase. The frustrating part is

...

Multiple IPSec tunnels, single external IP

Looking to set up a POC with a PA-820 that has the following

  • IPSec VPN site-to-site between our local facility and 3 partner networks
  • Single external IP, 3 tunnels (IKE P2)
  • NAT to a single host on our local private network

Is this reasonable/possible?

digdoug by L0 Member
  • 2711 Views
  • 1 replies
  • 0 Likes

Resolved! Default PANOS for PA series

Hello, 

Anyone have the ideas how to check online what is the default PANOS which ship with PA series FW?

I have PA-3220 ordered last Nov and it will arrive soon.

Many thanks,

Failed exporting config bundle via ssh

Failed exporting config bundle via ssh to servername.com /tmp/pan/pano_name_20220106.tgz: No such file or directory..Killed by signal 1..'

 

It was working, but suddenly has stopped.  "Test SCP server connection" works and drops the test file in the co

...

Resolved! Installing a new cert

For Global Protect I currently have a server cert on my PAN 3220. When i imported it it had the entire chain - root, intermediate and the server cert. That server cert is now nearing expiration. I gave our cert manager a CSR from the PAN and I now ha

...

palomed by L3 Networker
  • 1560 Views
  • 1 replies
  • 0 Likes

PRISMA SD-WAN

Is Palo Alto dropping support for PRISMA SDWAN?   A lot of the older but detailed CG branded docs are gone, but there are no new Palo Docs to replace them?   I'm interested in implementing the Cloudblades, and all the site links take me in a loop of

...

4cls by L0 Member
  • 1608 Views
  • 1 replies
  • 0 Likes

Where do you get additional threat feeds from

Hello All,

Just curious as to what additional threat feeds you use to ingest into your PAN. Here are some of the ones we use:


Threat intelligence blocklists
https://talosintelligence.com/documents/ip-blacklist
http://rules.emergingthreats.net/fwrules/eme

...

FQDN URLs that change IP addresses quickly

PA-3220 Active/Standby Pair

10.0.8-h8

 

We have a URL we tried adding to a negate policy for inside to outside decryption.  This resolves the ability to pull credit reports into our core financial system.  However the problem is still intermittent.

 

Its

...

ksauer507 by L3 Networker
  • 3774 Views
  • 5 replies
  • 0 Likes

Problem with Wildfire Registered Server busy or error

 

Hi team,

We have detected loss of connectivity to wildfire, We have followed the following link but the problem persists https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000oMCYCA2

Model PA-3220

Version 9.0

 

Does anybody know what

...

Alpalo_1-1644248096348.png
Alpalo by L4 Transporter
  • 1616 Views
  • 2 replies
  • 0 Likes

Firewall Failure

Hello guys, last week i have experienced something very weird.
I have two PA-3220 in HA Active/Active. They were working properly and all of the sudden, the Active-Primary stopped working (all the interfaces went down except the management interface,

...

Engine Status: Backoff - Unable to Config Huge feed.txt

Our Minemeld is unable to add new feeds which are larger in size. IOCs in one of our source files count around 150000 but it seems like only 1700 are added before the error comes Engine Status: Backoff and Engine couldn't able run again as it shows F

...

shankeri by L0 Member
  • 1102 Views
  • 0 replies
  • 0 Likes
  • 24204 Posts
  • 100 Subscriptions
Top Liked Authors
Labels