General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4111 Views
  • 0 replies
  • 0 Likes

Resolved! Palo Alto integration with Azure Sentinel

Hi All, We are currently working on setting up the Azure Sentinel for our environment and Integration of PA firewalls with Sentinel is our top most priority. However we need to understand what will be the best approach for integration. Should we integrate independent firewalls with Azure Sentinel or Panorama with Azure Sentinel or both firew...

Multiple DHCP scopes on single interface

School network here with an old Windows server running DHCP for our 10 VLANs. Would like to use our PA-3220 firewalls to run DHCP so I can get rid of the old server. Layer 3 routing happens inside the building network on the top of rack switch (Aruba 6405) DHCP Relay is also enabled on the top of rack switch since the DHCP server is on a se...

Resolved! XFF: For security Policy

Trying to implement this. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/policy/identify-users-connected-through-a-proxy-server/use-xff-values-for-ip-based-security-policy-and-logging Azure Web Application Gateway is in the front, acting as proxy. I can see packet captures for port 80 x-forward for is included But i don't see xff in...

image.png
image.png
raji_toor by L4 Transporter
  • 3105 Views
  • 2 replies
  • 0 Likes

Wildfire on Password protected zip & RAR

Hello experts, How would the Wildfire (submission) on firewall deal with these types 1) password protected zip 2) password protected 7-zip 3) password protected RAR? would it automatically submit by Firewall or need manual submit thru Wildfire portal or API? any ideas? Thanks Harris. WildFire

Resolved! GlobalProtect Portal HTTP redirect

Dear all,We're currently testing the GP VPN solution before we roll it out to our notebooks. We noticed that we can only access the portal homepage if we explicitly enter "https://<portal-url>". It doesn't work with just "<portal-url>" there HTTP would be used. Is there any way to activate an HTTP to HTTPS redirect for the GP portal?...

oschuler by L4 Transporter
  • 13157 Views
  • 6 replies
  • 1 Likes

Resolved! maximum number of GlobalProtect VPN tunnels for PA-5450

Hello PA community , Our customer is looking for the maximum limit for GlobalProtect Gateways on PA-5450. The most recent KB we found was this which covers 5250, but we would very much like to verify if it is still the same or more for 5450:https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClidCAC we checked also co...

Resolved! IPSEC tunnel

Hi All, Our vendors are migrating their IPSEC tunnel firewall, which is resulting to change the tunnel gateway IP from our palo-alto firewall end as well. So, we are thinking just to create one more ipsec tunnel without tagging the tunnel interface and during maintainace window just to bind the tunnel interface to our new Ipsec tunnel and ...

Sujanya by L3 Networker
  • 3182 Views
  • 2 replies
  • 0 Likes

IPSec tunnels with Prisma Access don=t not come up after reboot

Hi community! Our firewall rebooted and after reboot we noticed the IPSec tunnels to Prisma Access did not restore automatically. Normally the IPSec tunnels come up when traffic is going through the tunnel.Do you know if this is a normal behavior with tunnels with Prisma Access? Thank you in advance!

Carracido by L4 Transporter
  • 1489 Views
  • 1 replies
  • 0 Likes

Slow upload speed PA-500

Hi, We are using PA-500 firewall and our download/upload speed is 100/42. We have subscribed for Acronis Cyber Protect cloud backup of all our servers. we are facing slow upload speed like 600 kBps while doing backup on Acronis data center. what needs to be check on firewall and how we can increase the upload speed? can we allocate dedicated upl...

IPsec tunnel takes long time to re-establish

Hello, We have 2 IPsec tunnels s2s between 2 Palo Alto firewalls. We are using ike-v2 gateways, and liveness check : 5s The WAN on one of the side is flapping, sometimes disconnect around 10min. After this disconnection, the tunnel does not re-establish immediately, it takes around 15min. We have also configured tunnel monitors on both sid...

CTramier by L0 Member
  • 4483 Views
  • 4 replies
  • 0 Likes

Resolved! URL Filtering - TLS 1.3 Website

Hi,I am new to Palo Alto Firewalls and am in the middle of testing some of the functionalities provided. One of which is URL Filtering. I have been able to clone the default URL Filtering Profile. I then added a website to the blocked list. Then assigned the profile to a security policy. And it worked. I found this knowledge base article confirm...

tpmeier by L0 Member
  • 9208 Views
  • 2 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels