General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4105 Views
  • 0 replies
  • 0 Likes

RedHat IPA authentication on Palo Alto

Hi, When using RedHat or CentOS IPA authentication on Palo Alto firewall, we may ran into challenges when adding LDAP Server Profile and GP Clients functionality related issues.LDAP Server Profile - On a traditional RedHat or CentOS IPA server there will be multiple ou under the Base DN, In order to work properly along with Palo Alto Server prof...

vjbennet by L0 Member
  • 4524 Views
  • 3 replies
  • 0 Likes

Palo Alto Firewall - Exporting Log Database via FTP/SCP is not working

Hello All, We are currently doing a POC with Palo Alto firewall in a customer network. The POC got successfully completed. But while exporting the log database from the appliance we are hitting we issues. After checking the admin guides, found the logs can be exported via FTP on the "Scheduled log export". Via GUI:Provided the FTP path, credenti...

Resolved! masterd: restart exhausted, rebooting system | Palo Alto's process

Hi all, I'm trying to understand better Palo Alto's proccesses analyzing tech-support file with dedicated PANTS tool. I can clearly see that, this pa2020 with 6.0.9, reboots due to masterd process: -------------------------------------------------------------------------------------- ----------------------------------------------------------...

Masterd_exhausted.JPG

Update of Default Trusted Certificate Authorities?

I am just curious - in which way is the list of trusted certificate authorities (WebUI: Device > Certificate Management > Certificates Default Trusted Certificate Authorites) updated? By firmware update or by dynamic update? Regards,Sylvia

sylvia by L1 Bithead
  • 6901 Views
  • 4 replies
  • 1 Likes

PSE software firewall associate

Dear all, I need your help to find my exam question, I am really confussed some question about PSE software firewall associate. Please help me to find right answer. 1. What is the preferred way to analyze traffic logs generated from multiple data center firewalls? a)Use Palo Alto Networks Prisma Access console to view all firewall logs. b)Log ...

Tugsbold by L0 Member
  • 3272 Views
  • 1 replies
  • 0 Likes

advertise inter-vr route to BGP

Hi, I have RBVPN with BGP and I need to advertise routes that have a next-hop to another VR. They do not seem to be advertised to BGP (currently I advertise only connected routes, not static). Is there a simple way to add these routes from another VR to BGP?

MiikaR84 by L0 Member
  • 1487 Views
  • 1 replies
  • 0 Likes

Recover Deleted Customer Support Portal account

Anyone have any idea how to create a user account with an email that was already used prior? I created an account but messed up and deleted it. Unfortunately I did not mess up the email so now when I try to create the account again, it says the email already has an account and cannot be used and cannot log in. I cannot change the email address...

Resolved! PA-440's, and Redundancy

Can you setup/configure 2 PA-440's inter-connected with one being a failover for redundancy in case the other bricks? Or only Dual ISP redundancy using Static Routes Path Monitoring feature, for Traffic failover? Is it even possible to setup 2 PA-440's configured identically with one a hot(plugged in) failover? Forgive my terminology.

Group of Regions / Region Groups

Is there a specific reason that this feature is not yet available? It's a bit of a pain from a readability perspective to have a massive list of Regions tied to multiple policies, to say nothing of having to update multiple policies which may reference the same set of regions. It just seems as though "region" should just be another thing you can...

charlesw by L1 Bithead
  • 4945 Views
  • 3 replies
  • 3 Likes

PA firewall dropping fragmented packets

Hello, We've seen Netflow Traffic being dropped by the Palo Alto firewall based on the packet captures taken. No zone protection profile is set. DF bit is set to zero. MTU settings are fine and fragmented packets are less than 1500. However, FW is not reassembling the packets. Global counter shows: IP Fragments entry insert failure. IP Fragemen...

Netflow.jpg
Farzana by L4 Transporter
  • 6744 Views
  • 1 replies
  • 0 Likes

About Captive Portal

Hello, I followed the link below to configure Captive Portal https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000CqbiCAC When I finished, I found that I was able to successfully browse the Yahoo! However, when I wanted to browse google I found that I couldn't do it How do I set this up to solve this problem ? Any help...

young19918_0-1677734752579.png
young19918_1-1677734840519.png

Panorama drops devices from device groups

Panorama shows that all devices have "No device group assigned" in the Managed Devices, Summary screen, but the devices look fine in the Device groups screen.This is also resulting in being unable to commit changes to the firewalls. This issue happened earlier on today, and went away with a reboot of Panorama, but appears to have come back. What...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels