General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Site-to-Site IPsec vpn tunnel interface another MTU

A Firewall (Branch) > show interface tunnel.10 Interface MTU 1500 > show vpn flow tunnel-id 1 tunnel mtu: 1436 B Firewall (Bonsa) > show interface tunnel.10 Interface MTU 1500 > show vpn flow tunnel-id 2 tunnel mtu: 1436 The mtu value is different when checked by the command. How do I set the mtu value on the tunnel interface...

qmso475 by • L3 Networker
  • 5177 Views
  • 2 replies
  • 0 Likes

Request for Palo Alto PSE Strata Prof. clarification

Friday 14th august I tried to pass the PSE Strata Prof. exam. I failed but I would really like to know if I in any way was close to pass this exam. I am well aware that you get a score of procent for every technology. But there is no where it is said that you need 70 or 75 or 80 procent to pass this exam. Best Regards Tom

Error while accessing palo alto console

Hi Support team, I am new to firewalls. I'm trying to setup a lab in PNETLab with Palo Alto firewall. My PNETLab is working on 192.168.88.129. I'm trying to access Internet from Windows through the firewall (Setup diagram attached). But I can't access my Palo Alto to proceed with the palo alto configuration. Please suggest how can I access th...

Rajutp by • L0 Member
  • 2972 Views
  • 1 replies
  • 0 Likes

API pull export PAN URL Category's

Is this a possibility to use either XML or REST API to pull or export Objects/URL Category/custom-url-filter from pan or local firewall? Wanted to use data to create a EDL for other system.

User-ID integration with a Samba domain?

Hey Guys,I am installing a new PA at a customer who has a Samba domain instead of an AD domain.I should point out that I know little about Samba.Question is: how can I implement UserID?* With the UserID agent -> This will not work, since the agent is only AD based, and since Samba does not have any security logs from which to read.* With Capt...

mr.linus by • L4 Transporter
  • 8377 Views
  • 4 replies
  • 0 Likes

Threat log Issue

Hi Team, In monitor threat we are getting URL column as blank. We can see source address and destination address. Can we get URL also in the logs for any actions of vulnerability protection? Thx

Jessevu by • L0 Member
  • 1811 Views
  • 1 replies
  • 0 Likes

Resolved! Upgrade PAN OS Version

Hi guys! I have a question with upgrade in 10.1 version. Actually, I'm running the version 10.1.6-h3 in a VM Series. Can I upgrade directly from 10.1.6-h3 to 10.1.9? Thank you for your help! Regards.

Resolved! Is New App ID Rule Setup Correctly?

Its getting a lot of hits, I setup Application filter for new app IDs and added them to their own Security Policy rule. Does this look correctly? Im confused as to why its getting so many hits.

DuggiFresh_0-1680043214733.png

Environmentals

I got an alert via AIOps that I had a power supply failure and a show system environmentals does show the alarm: ----Power Supplies----Slot Description Alarm InsertedS1 Power Supply #1 (left) True TrueS1 Power Supply #2 (right) False True From the GUI however in Panorama > Managed Devices > Health I see the following: So I'm wondering...

PS.jpg

Threat log issue

May I know why no file name display in threat log which action is alert. Please see attached the photo.?

WingMak by • L1 Bithead
  • 3401 Views
  • 2 replies
  • 0 Likes

Validation Error after upgrading to 10.2.3-H4

Recently upgraded my PA-5220 to version 10.2.3-H2 from version 9.*, (took me 5 version upgrades to get into the 10.2.3-H2). Which now is causing some commit issues. The issue is a Validation Error as follows: vsys>vsys1>service-group>DM_INLINE_SERVICE_1>members 'domain' is already in use vsys>vsys1>service-group>DM_INLINE_SE...

CAllen by • L0 Member
  • 2690 Views
  • 1 replies
  • 0 Likes

Server Monitoring of User-ID agent set-up shows Authentication failed /Connection refused error

We have over 80+ firewalls in our environment, all of them of version 10.1.6.-h6 , we are using Kerberos profile in the user-id agent set-up and every server monitor status seems connected. Except for the firewall which is with PAN-OS version 10.2.3.-h4, even after using the same parameters. getting below error: Server monitor HOSTNAMEDP(vsys1):...

Sujanya by • L3 Networker
  • 3863 Views
  • 1 replies
  • 0 Likes

Resolved! Upgrading PAN-OS 8.1.x to 9.1.10

I want to upgrade PA-3220 (Active - Passive) from 8.1.14 to 9.1.10 Is this upgrade method correct or not?1.Download and install PanOS 9.0.0 (no reboot) Should I upgrade PanOS to 8.1.19 (Preferred release) or not?2.Download and install PanOS 9.0.13 and reboot3.Download and install PanOS 9.1.0 (no reboot)4.Download and install PanOS 9.1.10 ...

jirasith by • L1 Bithead
  • 13649 Views
  • 10 replies
  • 0 Likes
  • 24458 Posts
  • 125 Subscriptions
Top Solution Authors
Top Liked Authors
Labels