General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 249 Views
  • 0 replies
  • 1 Likes

Resolved! noreply mail not arriving

Hi all,

I have a collaborator that is trying to change his password, but when he clicks on "forgot password" link, the portal says the mail is delivered, but he doesn't receive any mail from the "noreply@paloaltonetworks.com".

When i do a message trace

...

Guide for troubleshooting Nats security policies

Looking to see if there is a troubleshooting guide for NATS and for Security Policy rules.

 

Searching has turned up various hits here and there, but not something comprehensive as what cisco has on their site for their docs.

 

Am I just looking in the w

...

Support portal login error

When I tried to log in to the support portal, getting the below error, earlier I used to login into the portal.

UnAuthorized Access
Your membership has expired or has not been approved, please contact Palo Alto Networks Support.

 

my name : Arumugasamy

em

...

Change HA pair from Active/passive to Active Active

Hi All,

 

I will be changing one pair of our firewalls from an active/passive pair to an active/active pair. Whilst confident of what is needed and the process I need to take, has anyone ever gone through this process? Was it problematic, time consumin

...

a.jones by L3 Networker
  • 7241 Views
  • 3 replies
  • 0 Likes

PBF Issue

Hello, i have palo alto with 2 ISP(A and B) and 1 internal connection

i enabled the ECMP + simetric return and ecmp setting IP Modulo.

my goal is, force 1 IP segment to ISP B to go to the internet

 

i already setting in PBF, using enforce return simetric

...

Vpnc client region null

Hi all,

I'm trying to connect to vpn using vpnc.

Everything works fine, but if I restrict the region in the gateway, vpnc does not connect because it is shown as "Client region: (null)"

Any experience on this?

Thanks

N2Z2 by L2 Linker
  • 1606 Views
  • 2 replies
  • 0 Likes

User-ID with 802.1x problems wired and wireless

Hi all.

 

We have PA-820 with 10.1.2 with User-ID Agent on Windows AD runing version 10.0.4-r23 and we are using Cisco switches for users. We have 802.1x enabled on ports for users. The problem we have is, that PA doesn't recognise users from 802.1x, i

...

Interfaces in power-down state

Hi all...I have a Palo Alto Active/Active pair and the HA3 link between them is down. Will PANOS then power-down all other physical interfaces when the HA3 link is down. Just looking for confirmation that this is expected behaviour or whether I have

...

Decryption or blocking NordVPN

Is it possible for Palo Alto Firewall to decrypt third party VPN agent traffic such as NordVPN, NordLynx like decrypt HTTPS web-browsing traffic?

 

If it cannot decrypt these traffic, anyone know the App-ID for NordVPN, NordLynx?

I found some VPN app-ID

...

JoeKwok by L2 Linker
  • 4951 Views
  • 3 replies
  • 0 Likes

Resolved! cortex xdr agent connection problem

hi everybody,

 

we've installed cortex xdr agent on a terminal-master server which gets cloned for distribution

 

xdr-agent on master has active connection to cortex-cloud

 

but cloned servers can't connect...

 

 

xdr-log:

 

2022/05/18T14:32:44.590+02:00 <Info>...

Resolved! Management IP in Active/passive setup

Hi 

 

I am quite new to Palo Alto firewalls, but have worked with different vendors before. 

 

When running a HA in Active/passive a central VIP for mgmt is usually setup, so you dont connect to the passive FW.

From what i see there is no VIP for mgmt in

...

Url problem

Hello everybody.

I allow a url. I also allowed categories for that url, but the site still doesn't work properly. There is a problem connecting to a server on that site and it is deny

 

Thanks in advance

Fagani by L2 Linker
  • 3619 Views
  • 7 replies
  • 0 Likes

Resolved! Panorama 10.0.5 - Scheduled Config Export - ssh custom port

Hi,

we try the export of the config of Panorama and our bothe Firewalls 3260 thru the "Scheduled Config Export".

It runs well with FTP and SCP port 22.

 

With a custom port ssh, the "Test SCP server connection" failed.

 

I found no future infos on https://

...

bovay by L1 Bithead
  • 3102 Views
  • 4 replies
  • 0 Likes
  • 23627 Posts
  • 107 Subscriptions
Top Liked Authors
Labels