General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 241 Views
  • 0 replies
  • 0 Likes

TCP session timeout behaviour

Hello,

 

I have a question about the mechanism of TCP session timeout on PA FW. Assuming that default TCP timeout on PA device is 3600 seconds. What happen after a TCP session is idle after 3600 seconds ? Does the FW send TCP RST at each endpoints ? Or

...

Intergate TWSITCLI with PRISMA CONSOLE

We are looking for documentation/Actual Steps ,  How can we integrate TwistCLi which is being deployed over a VM Linux machine and currently being used to scan Tar container image files with Prisma console

Resolved! User-ID-Agent wrong mapping with specific IPs

Hello,
since a few days we see strange things with User-ID-agent.
For some specific IP-addresses there are shown wrong users. This users even are not in the internal AD, they are just external VPN users invited from Azure. But they are mapped to intern

...

Global Protect error Windows 7 Client

Good afternoon, first of all thank you very much for the help and support for this case:

 

"The virtual adapter was not set up correctly due to a delay. GlobalProtect will try again soon. If the issue persists, please restart your system"

 

-Windows vers

...

Error_Gprotect_Win7_2021-08-24 at 17.52.48.jpeg
Metgatz by L4 Transporter
  • 2554 Views
  • 2 replies
  • 0 Likes

Resolved! VPN to AWS with BGP

Hello,

 

I have 3 locations that I need to create VPNs to AWS for.  Each location is dual ISP using PBF.   Since AWS uses 2 tunnels each VPN connection, seems there will be 4 total tunnels per location (2 per ISP).  My initial thought was to use stat

...

mnashe by L1 Bithead
  • 7854 Views
  • 5 replies
  • 0 Likes

bgp cmd

Hi All ,

Just checking what cmd we can use to validate receive and adversities BGP route from a peer like we have in cisco .

 

@PavelK 

Resolved! Security Policy - US access only

Hello,

I'm trying to configure a Security Policy to only allow US-region IP addresses to hit our network.   I added as a first rule to allow any untrust us region to destination untrust US region.  I am not sure if this is correct.  maybe I'm allowin

...

YParreno by L1 Bithead
  • 2791 Views
  • 3 replies
  • 0 Likes

GlobalProtect Always On Issue

I am currently testing GlobalProtect Always on, I have configured to operate at user logon. The issue I am having is that on start-up of my laptop, on my corporate network I am prevented from any network access. If I connect to my public WIFI and con

...

rossm by L1 Bithead
  • 2861 Views
  • 7 replies
  • 0 Likes

Resolved! Firewall is not forwarding logs to Panorama

Hi Folks,

 

We have PA-3250 firewall deployed in our environment managed by Panorama.

 

The panorama is deployed in Panorama mode and the firewall is under panorama and no connectivity issue between firewall and Panorama.

 

The firewall is also added

...

L2TP over IPSec PAN-OS 8.1.11

L2TP over PAN-OS 8.1.11 with
IPSec is supported in PAN-OS 8.1.11?

 

When I check the traffic log, the reason for session termination is "aged-out" and I am unable to make a VPN connection.

 

I have Virtual Wire set up, but I would like to know if anyo

...

tsawada by L0 Member
  • 1196 Views
  • 0 replies
  • 0 Likes

GlobalProtect Silent Install

We are currently in the stages of switching over our equipment to palo alto. In preparation, we are installing the global protect app on all machines ahead of the migration. I've got a silent install setup, but once it completes, I get a connection f

...

  • 23624 Posts
  • 107 Subscriptions
Labels