General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PA-3020 Dataplane 100%

We have aggregated ports for the PA to "handle" what Consolidated has for us on a 2GB circuit.  Is this a case where our 3020 can't handle the traffic we have or is excessive logging a more likely culprit.  GoldSeal has our support and the need for i

...

sgarvin by L0 Member
  • 1785 Views
  • 3 replies
  • 0 Likes

Resolved! Template Variables - vrouter destination

I seem to not be able to use a template variable as a route destination in a vrouter.  There is an option to create a variable in the destination field, but it becomes an invalid option after creating.

 

 

If you know how to make this work, please let m

...

jasonrakers_1-1647027402719.png
jasonrakers_0-1647027347760.png

Resolved! iBGP Between Palo Alto and Cisco Router

Got two Cisco ISR 4431 as border routers peering with 2 ISP. Got PA-850 that I need to configure as:

  1. HA
  2. iBGP - OSPF
  3. configured ip unnumbered on the Palo Alto interface connecting to the Cisco 

Any configuration example out there that can assist will be r

...

HA mistake after update to 10.2

FW1 10.1.4 è Download 10.2 and synch to FW2

Download OK Sync OK

Setup 10.2 on FW1 and reboot ==> FW2 begin Master.

Check FW1 reboot OK 10.2 online OK.

FW1 ==> Master

Setup 10.2 on FW2

Reboot ==> Lost access on management interface.

  • Disconnect Wan int
...

Resolved! XFF When Using DNS Proxy Object

Hi All,

 

I am using DNS proxy and as such all the threat logs that are to do with DNS requests only have the firewall IP in them, all users are using Global Protect and I have enabled x-forwarded-for headers for user-id.

 

Is there anything else that I

...

PA-460

Hi,

 

I need assistance for PA-460 HA1 and HA2 connectivity. PA-460 doesn't have dedicated HA1 and HA2 ports. And please let me know do we need dedicated links for HA1 and HA2 between two devices ?

 

Regards,

Suresh

surkumar by L0 Member
  • 1828 Views
  • 1 replies
  • 0 Likes

Help With Configure PA-220

I am trying to build firewall from scratch. Our use case is to secure 3 servers with separate DSP connected to PA-220. We do not have any managed switch or router between ISP to firewall. It is direct from modem to firewall.

 

Can anyone help with this

...

Traffic monitor incomplete

I've got a new Global Protect portal/gateway.  When I get connected to the gateway, I can see the connection via the GP monitor.  Then if I go the to traffic monitor and search the source range 192.168.203.0/24 I only get traffic from previous testin

...

danoman2 by L3 Networker
  • 2111 Views
  • 4 replies
  • 0 Likes

URL FIltering

I was curious if anyone knows why even when traffic is flagged as a threat by URL filtering there are still packets being sent and received?  

  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels