General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4435 Views
  • 0 replies
  • 0 Likes

Group of Regions / Region Groups

Is there a specific reason that this feature is not yet available? It's a bit of a pain from a readability perspective to have a massive list of Regions tied to multiple policies, to say nothing of having to update multiple policies which may reference the same set of regions. It just seems as though "region" should just be another thing you can...

charlesw by L1 Bithead
  • 5053 Views
  • 3 replies
  • 3 Likes

PA firewall dropping fragmented packets

Hello, We've seen Netflow Traffic being dropped by the Palo Alto firewall based on the packet captures taken. No zone protection profile is set. DF bit is set to zero. MTU settings are fine and fragmented packets are less than 1500. However, FW is not reassembling the packets. Global counter shows: IP Fragments entry insert failure. IP Fragemen...

Netflow.jpg
Farzana by L4 Transporter
  • 6900 Views
  • 1 replies
  • 0 Likes

About Captive Portal

Hello, I followed the link below to configure Captive Portal https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000CqbiCAC When I finished, I found that I was able to successfully browse the Yahoo! However, when I wanted to browse google I found that I couldn't do it How do I set this up to solve this problem ? Any help...

young19918_0-1677734752579.png
young19918_1-1677734840519.png

Panorama drops devices from device groups

Panorama shows that all devices have "No device group assigned" in the Managed Devices, Summary screen, but the devices look fine in the Device groups screen.This is also resulting in being unable to commit changes to the firewalls. This issue happened earlier on today, and went away with a reboot of Panorama, but appears to have come back. What...

Palo Alto Firewalls - Azure deployment design for regional resiliency

Hello everyone! I'm new to the Palo Alto Firewall and I've been reading the documentation on securing applications in Azure using Palo Alto's firewall here https://www.paloaltonetworks.com/resources/guides/azure-architecture-guide. While going through the documentation, I noticed that it talks about achieving firewall resiliency in Azure usin...

Telemetry

Hello - How often is telemetry data sent and can I change the timing? There is this doc, but I'm not exactly sure what it is telling me: https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/device-telemetry/device-telemetry-collection

Resolved! Global Protect authentication happened two time while using RADIUS

Hi Team, We have faced the Global Protect authentication that happened two times while using the RADIUS server. First, I am trying to connect to VPN and enter the user name and Password after the OTP has asked then entered the OTP after, again the user name password is asked then OTP is provided after VPN was connected. We need to avoid the ...

Resolved! Why have I been sinkholed?

I former colleague just notified me that he couldn't get to my site https://normative-technology.org/ because it is CNAMEd to sinkhole.paloaltonetworks.com . I understand what a DNS sinkhole is (in fact, I'm using them myself), but not why my domain ended up sinkholed by Palo Alto Networks. Also, I don't find any policy documents relating to th...

KjetilK by L0 Member
  • 3642 Views
  • 2 replies
  • 0 Likes

SMC SSD Failure Detection : Press F1 to Resume

I recently stumbled upon this error and found very little documentation on the subject that I only found after the fact. On the SMC of the 7000 series firewalls, there is a SSD. This SSD will fail over time. I found out when rebooting after an upgrade in a remote DC that took hours to get someone on site with a console cable. The chassis was sit...

Kocian by L1 Bithead
  • 7265 Views
  • 4 replies
  • 0 Likes

Resolved! No Super User to authorise my Support Portal account

Hello. I need to download the PaloAlto Terminal Services user-id agent. To download this agent, I need to have a PaloAlto Customer Support Portal account. I went through the process of setting up a Support Portal account, using my device serial number and customer number. Unfortunately, I get a message saying my account expired or was not yet ...

XSOAR - for an environment of 26 Palo Alto Firewalls + 4 PANORAMA - is it worth it?

XSOAR - for an environment of 26 Palo Alto Firewalls + 4 PANORAMA, is it worth it? Hello, good evening to the community, thank you for your time and collaboration. I have some doubts regarding some points, which is what a certain partner commented on who is looking for more or less the following points to cover with Palo Alto, with some tool...

Metgatz by L4 Transporter
  • 1842 Views
  • 1 replies
  • 0 Likes

Resolved! bgp neighbour state

Hi,Bro The bgp neighbor GUI displays idle and the CLI is established. Is this a bug? Does anyone encounter the same problem? The customer's version is panos 10.1.6.

Resolved! LSVPN running under mixed versions

I currently have my entire environment running on V9.1.15-h1. We currently plan to upgrade the data center VMs and 3220 to 10.1. These also will contain the GP portal and the LSVPN portal. With the firewalls (many 3020s) staying on v9.1.15-h1, will these firewalls have issues connecting to the LSVPN portal?

TWCMoore by L0 Member
  • 2036 Views
  • 1 replies
  • 0 Likes
  • 24374 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels