General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

IP Wildcard Mask Address Objects

Hey, This properly confuses me every time I look at it. Is anyone able to explain in very simple terms how to work out what the mask should be? For example: We have an IP scheme that looks like 10.x.128.0/24 where the x changes for each site. We have been using an IP Wildcard address object of 10.128.128.0/0.127.127.255 which seems to have bee...

SARowe_NZ by L3 Networker
  • 18831 Views
  • 15 replies
  • 1 Likes

Integrating Palo alto with Microsoft authenticator for MFA in global protect

requirement is to integrate Palo alto with microsoft authenticator for MFA purpose in global protect VPN. AD users will get authenticated with MS MFA in Palo alto while accessing network through global protect.Please let me know if feasible ,if yes what is the prerequisites.If not what other MFA can be used to authenticate AD users to palo alto

PA460 firmware upgrade

We are using PA460 model and are on version 11.1.6-h10. We are planning to upgrade. I read in one of the document that moving to preferred version 11.2.4-h7 has some out of memory issue which causes the device to crash and reboot unexpectedly in PA460 model and it is corrected in 11.2.4-h12 which is not a preferred version. Let us know the best ...

Migrate PA-850 to VM500

Hi, I need to migrate a HW PA850 to VM500 in the same version PanOS. So What is the recommended way to transfer the config? export/import running-config should be OK? Or it could be any issue bacause of diferent device? or adding all config commands via CLI?

BigPalo by L4 Transporter
  • 814 Views
  • 1 replies
  • 0 Likes

API pagination for Panorama address object

Hi All, I am trying to confirm what is max number of entries can API query return for address object .Like we have around 50k address , will API query will fetch all data in single page or it will fetch specific number of entries ? or we need to use some sort of pagination if we have some limit per page and what parameter i can use. Thanks

Questions Regarding Output Difference in "show ctd-agent status security-client" Command

Hi Team, I have a question regarding the output of the “show ctd-agent status security-client” command.My understanding is that this command displays the connection status between the firewall and the content cloud.In our customer’s environment, I observed a difference in the command output after upgrading from version 10.2.x to 11.1.x. [PAN...

Resolved! NAT issue - ISP interface IP different than public IP block assigned

I'm currently working with PA support on this issue but I thought I would put this question out there for the community to see if anyone has had a similar problem. We are in the process of migrating from Juniper SSG firewalls to the PA-500 and the issue we have is when we attempt to migrate our ISP connection to the PA, we are no longer able to...

Resolved! Pull address object using XML API

Hi All I am trying to get details of particular address object( not all address present in shared location) .Any pointer for XML API or any suggestion to used panos python SDK

Resolved! Identifying Source IP Addresses for Routing Palo Alto Firewall Logs to an Azure Collector via IPSec Tunnel

Hello, As part of the implementation of log forwarding to an Azure collector, we would like to identify the source IP addresses currently used for routing logs from our equipment. An IPSec tunnel is already in place between the front-end and Azure. How can we identify the source IP addresses for routing logs from the following devices to t...

Resolved! Request: List of GTIN / UPC Barcodes for Palo Alto Networks Products

Hi everyone, I’m looking for a complete list (or official source) of GTIN / UPC barcodes for Palo Alto Networks products — including firewalls and accessories. We’re integrating Palo Alto products into an eCommerce catalog and would like to ensure barcode accuracy for inventory and listing automation. If anyone has access to an official database...

  • 24426 Posts
  • 125 Subscriptions
Top Solution Authors
Top Liked Authors
Labels