General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PAN-OS 10.2.3 - HA1 PRTG bug - PA-220

Hi, Since updating our firmware to 10.2 we have noticed that ha1 shows down in our monitoring tool but is showing as up on the device. Has anyone seen anything like this before? This is on multiple devices and has not effected the PA-800's. Thanks Luke

LukeRath_0-1674469242937.png
LukeRath by L1 Bithead
  • 1838 Views
  • 1 replies
  • 0 Likes

Resolved! opcmdhistory log missing in PanOS9.1

I noticed that the “opcmdhistory” log disappeared in Panorama after upgrading to PanOS9.1. It was there in 9.0 and previous versions. Do you know why it changed and if the information is in another log file?I was using it for troubleshooting and detecting cli commands executed by other admins, API calls, etc.

batd2 by L4 Transporter
  • 5497 Views
  • 5 replies
  • 0 Likes

URL action block-continue

We can set the following actions for URL filtering categories: The URL filtering logs show the following possible actions: alertblock-urlcontinueblock-continue The first 3 are clear and relate to the action we set in the categories. Can someone please explain the "block-continue" action?

batd2_0-1606381147745.png
batd2 by L4 Transporter
  • 8759 Views
  • 2 replies
  • 0 Likes

Resize GlobalProtect Notification window

Hey,I have a customised login page for when users connect to the GlobalProtect VPN and it frustratingly doesnt fit on the screen. I would like to know whether the Notification window can be resized and grow to a larger size than the default.

mwhite by Not applicable
  • 4580 Views
  • 3 replies
  • 0 Likes

Resolved! Firewall Unable to connect to ISP Router

I m setting up a small office network where the endpoints are connecting to a switch that is in turn trunked to a PA220 Firewall . The firewall external interface is configured with a static IP address within the same range as the ISP IP router . However it appears that neither the ISP router or the Palo can receive arp entries off each other le...

PA-VM testing / homelab

Hi Folks, I have quick question. If I want to do some home lab for learning purposes for example with eve-ng , how I can get PA-VM image I applyd for 30days trial, however for unknown reason I was rejected After our evaluation of your application, we are unable to supply a trial product download due to Trade or Legal restrictions. 1. I'm from ...

dakobg by L1 Bithead
  • 3832 Views
  • 4 replies
  • 0 Likes

PAN-Agent and Mac OS X Clients

Has anyone had sucess in the PAN-Agent capturing logins for Mac OS X clients joined to Active Directory?We have about 100 iMacs running Mac OS 10.6.5, and I always get a "_unknown_" username when looking at their IP address in the PAN-Agent. We have a Server 2008 R2 domain controller.

mharding by L4 Transporter
  • 8748 Views
  • 11 replies
  • 0 Likes

Monitoring large environments

Just wondering how others are monitoring large FW/Panorama footprints for things like license expiration, hardware failures and so on. Thanks in advance for your time.

Resolved! asset management

Hi, Does anyone know how you can remove an asset (PA-200 ) from your account ( unregister a device )I like to remove the devices from my account that I don't use anymore. kind regards Frederik

Resolved! Firewall details on Network tab and Device tab is not showing on GUI, but all details are intact on CLI

Hello, We have a offshore Palo Alto firewall that recently we noticed the details under the Network tab and Device tab is not showing on the GUI. But on the CLI the details are there. (ip address, settings etc) and the firewall is still operational have you guys encounter this before? for your advice.

URL Filter Troubleshooting

Note: "test url-info-host security.microsoft.com" doesn't work but "test url security.microsoft.com" shows both local and cloud results. Cloud / Local URL DB are the same. Software Version 10.2.3-h2 security.microsoft.com: Doesn't exist in the URL DB don.jarmon@Spragins-PA-FW1(active)> test url security.microsoft.com security.microsoft....

Traffic stops hitting when one of two FQDN objects in policy not resolvable

There is a security rule with two FQDN objects used as destination. Along with that user group is configured and source/destination zones - nothing special. There have been a couple of cases where traffic suddenly stops hitting the rule although everything seems to be in the place. It turns out on of the two FQDN address objects is not resolving...

nikoo by L3 Networker
  • 2529 Views
  • 2 replies
  • 0 Likes

Resolved! BGP ROA and RPKI

Does BGP on PAN-OS, any version, support Route Origin Authorization (ROA) or Resource Public Key Infrastructure (RPKI)? I find nothing in the docs or in the web interface that would indicate it is supported.

  • 24428 Posts
  • 125 Subscriptions
Top Solution Authors
Labels