General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Join the Fuel User Spark Event on March 19: Dealing with Threats !

 

Join us at the Fuel User Group Spark Event on March 19!

 

Get ready to ignite your cybersecurity knowledge and connect with industry experts at our upcoming Spark event hosted by the Fuel User Group. Whether you're a seasoned professional or just

...

kiwi_0-1709893724672.jpeg
kiwi by Community Team Member
  • 280 Views
  • 1 replies
  • 2 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3161 Views
  • 2 replies
  • 14 Likes

Resolved! HA failover logs

In PA-3220, are HA logs enabled by default? Does these logs contain the reason for transition between HA primary and secondary?

Resolved! Botnet reporting error command failed with no output

Hi All,

Did a replacement of a PA FW 5260 (pan-os 10.1.x) with a 5420 (pan-os 10.2.7)

everything is working as expected.. however not able to view any botnet reports.

botnet config in place under monitor\botnet\configuration.

licenses are in place an

...

PA_nts by L3 Networker
  • 516 Views
  • 2 replies
  • 0 Likes

Cisco ASA PA ipsec issue

Hi,

 

We have recently come across an interesting issue between a Cisco ASA ikev2 tunnel with a PA. 

If I was to failover the PA to an HA peer, traffic initiated from the Cisco ASA continues to flow whilst traffic initiating from the PA stops.

 

I noticed

...

Resolved! Commit Error: failed to handle CONFIG_UPDATE_START Issue

Hi All,

 

I think  most of you had experienced this failure issue once in your worklife  This error reason is mostly because config memory usage is too high.

>debug dataplane show cfg-memstat statistics

As we all know the number of custom url is limite

...

Resolved! Queries on OSPF Route Summarization

Customer have configured OSPF peering with firewall and switches.

Have multiple OSPF peering with different ZONEs via each sub interfaces. Currently we are receiving around 4k routes at DCE-ES for each peering. Since ES switch hardware not supporting

...

Resolved! RTP traffic not matching App-ID Rule

I have a strange issue where I have a configured rule to allow the "rtp" and "rtcp" App-IDs with application-default service from any-to-any. Below that rule I have a generic permit-any rule with application service any. Screenshots below. The behavi

...

IanGraham_0-1704745546729.png
IanGraham_3-1704745826139.png
IanGraham_2-1704745786416.png

IP Sec VPN Paloalto - Starlink

I'm testing Starlink business and having issues passing traffic over my tunnel. This remote site connects to our data center via an IPsec tunnel. I can get the tunnel up and traceroute to the remote side of the tunnel, but I'm unable to pass traffic.

...

Resolved! problems with dns resolutions

Hello, I have a problem with a DNS resolution, in some users with the GP agent 5.2.10-6 we can reach a resource for example vmare.x.x, but with other users.
There are several important points here:
All users have the same version of the global protect

...

Palo Alto Version Upgrade Skip Intermediate Versions

Hi There,

  I'm trying to upgrade a firewall from PanOS 8 to 10, and I want to skip the intermediate versions.

The firewall is not in production. Is there any way I can boot the firewall directly to version 10?

 

I appreciate any help you can provide

...

Unable to license PAVM 30days Evaluation

Hi Folks,

 

i like to try the new opportunity from Palo Alto to test the PAN VM for 30days. But for me it seems that this is the standard VM without any license.

So here we go:

https://www.paloaltonetworks.com/vm-series-trial

Sounds for me like a full fea

...

florianhahner_0-1634026365798.png
florianhahner_1-1634026506686.png

Resolved! IPv6 over PPPoE

(apologies if this has been answered before, I'm new to this community but I didn't find any answers to this.)

So basically my question is if it's possible to get IPv6 to work with PPPoE?

I just installed PA200 in my home, and before the PA200 I had tw

...

Natti by L1 Bithead
  • 5027 Views
  • 7 replies
  • 1 Likes

nslookup on the management port ?

I would like to check a few DNS issues I'm seeing on the management port.

I had hoped to find nslookup in the CLI, but it isn't there.

Is there something equivalent ?

Thanks.

DSTR by L0 Member
  • 22936 Views
  • 4 replies
  • 1 Likes
  • 24090 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels