General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! QoS cleartext match issue

We have setup similar to as below I created/applied default QoS profiles on AE1 and AE5. However in order to be more granular I want to apply on individual subnets.As in this example we want to use separate QoS profile for 10.129.0.0/16 subnet for traffic going to internet. I have tried to add subnet under cleartext on both AE1 and AE5, with a...

image.png
image.png
raji_toor by L4 Transporter
  • 2996 Views
  • 2 replies
  • 0 Likes

Resolved! Automate adding certificate to TS agent

Hello, I am trying to automate the configuration of the certificate part of the ts agent . My problem is to automate adding the certificate private key password in the ts agent. I have the certificate part filled in with registry keys but i have this error message when i try to launch the PanTaservice : 01/31/23 17:18:24[Error 341]: Query pass...

CHARRIER by L2 Linker
  • 3826 Views
  • 4 replies
  • 0 Likes

Resolved! Scheduled reports not working

Hey folks. I have setup some scheduled, custom reports on one of my newer firewalls to email me daily - but the report attached to the email is coming out empty every day. I know the custom report works - if I run it manually, it returns results and I can see them - but when it's run for the daily email, it's blank. I've got *exactly* the same s...

darren_g by L4 Transporter
  • 7958 Views
  • 4 replies
  • 0 Likes

Resolved! Asscess denied (Live community)

Hello there, is there any way of accessing this link data? http://live.paloaltonetworks.com/docs/DOC-4692 currently, I am been denied access. thanks a lot

Shadow by L2 Linker
  • 2129 Views
  • 1 replies
  • 0 Likes

Resolved! Failed to install version 10.0.0 type panos

Hi LiveCommunity, I'm trying to upgrade my firewall from version 9.1.15-h1 to version 10.0.0. But when I click on install I get this error : Failed to install 10.0.0 with the following errors.SW version is 10.0.0Error: Minimum disk size for upgrade is 60GBFailed to install version 10.0.0 type panos. The problem is that from my point of vie...

eallieri_0-1675093994144.png
eallieri by L1 Bithead
  • 4977 Views
  • 3 replies
  • 0 Likes

SA of the tunnel is Active

Hi Team,Can anybody tell the meaning of "What it means if the SA of the tunnel is up "?, Does it mean there is live communication in the tunnel.

Sujanya by L3 Networker
  • 5926 Views
  • 8 replies
  • 0 Likes

User authentication errors with Active Directory

Hi, We have a problem with a FW Paloalto: Model: VM300 We have had to upgrade the functional level of our Microsoft domain and update security patches of our Domain controllers on Windows 2012R2. As of this moment we are receiving in the domain controllers the following error:"The server-side authentication level policy does not allow the user C...

Alpalo by L4 Transporter
  • 18239 Views
  • 5 replies
  • 0 Likes

Static route path monitoring doesn't recover

Configured the path monitor on my primary ISP route per this guide, https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-admin/networking/static-routes/static-route-removal-based-on-path-monitoring.html# It worked great when I unplug the cable from the primary ISP CPE. The default route went to the back up ISP. Problem is the primary default rout...

Resolved! Log Forwarding

Hey, I'm using PaloAlto PA440 and I'd like to forward logs to syslog, but I don't use dedicated management (MGMT) port for administration. I configured log forwarding, but it does not work. Do I need to use dedicated management port to send logs? Is it possible to configure log forwarding on any port? Thank You!

yonkerro by L0 Member
  • 2298 Views
  • 1 replies
  • 0 Likes

Log collectors Incoming logs per second capacity

In a log collector group, we have two log collectors and redundancy enabled option is turned on. This results in the incoming logs per second capacity reduced to half. However, wanted to confirm that in order to use the incoming logs capacity of both the log collectors optimally- should we change the preference list on the managed devices so th...

Global protect client to access IPSEC peer networks.

Hello - my query is that "Is it possible for Global protect client users of HO to access the resources located at branch office over IPSEC tunnel? We have 3 branch locations configured Site to site IPSEC tunnels. Since I created a access rule in HO for the same but no success. Please suggest

amar by L1 Bithead
  • 2870 Views
  • 4 replies
  • 0 Likes

Amazon Video Not Playing

I'm running PanOS 9.0 on a PA220 and noticed a couple days ago that Amazon Prime Video wasn't playing on any of my wireless devices. However, it would play on a desktop or laptop through Firefox. After a few troubleshooting steps and Google, it seemed to me the difference was in the actual player itself. I enabled "Allow HTTP partial response...

JacobAn by L2 Linker
  • 7995 Views
  • 5 replies
  • 2 Likes
  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels